PT-2017-17570 · Openstack · Openstack Glance

Luke Hinds

·

Publicado

2017-03-21

·

Atualizado

2022-05-17

·

CVE-2017-7200

CVSS v3.1

5.8

Média

VetorAV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions OpenStack Glance versions prior to Newton
Description A Server-Side Request Forgery (SSRF) issue was discovered, allowing an attacker to perform masked network port scans through the 'copy from' feature in the Image Service API v1. This enables the creation of images with a URL such as 'http://localhost:22', which can then be used to enumerate internal network details while appearing masked, as the scan would seem to originate from the Glance Image service.
Recommendations For versions prior to Newton, consider disabling the 'copy from' feature in the Image Service API v1 as a temporary workaround to minimize the risk of exploitation. Restrict access to the Image Service API v1 to prevent potential attackers from creating malicious images.

Correção

SSRF

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-7200
GHSA-J6MR-CM6X-H6JG

Produtos afetados

Openstack Glance