PT-2020-21533 · Openstack · Glance

Published

2020-09-02

·

Updated

2020-09-02

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions glance versions prior to 3.0.7
Description The issue allows for Unauthorized File Access. The glance package has a --nodot option that is supposed to hide files and directories with names starting with a ., but it fails to hide files inside a folder that begins with ..
Recommendations Upgrade to version 3.0.7 or later.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

GHSA-VW7G-JQ9M-3Q9V

Affected Products

Glance