PT-2023-13974 · Openstack · Openstack Glance

Nick Tait

·

Published

2023-03-06

·

Updated

2023-03-13

·

CVE-2022-4134

CVSS v3.1

2.8

Low

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions openstack-glance (affected versions not specified)
Description A flaw was found in openstack-glance, allowing a remote, authenticated attacker to tamper with images. This could compromise the integrity of virtual machines created using these modified images.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2022-4134
GHSA-5GP5-VXJ6-4257
PYSEC-2023-270

Affected Products

Openstack Glance