Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-40767


In OpenStack Nova before 27.4.1, 28 before 28.2.1, and 29 before 29.1.1, by supplying a raw format image that is actually a crafted QCOW2 image with a backing file path or VMDK flat image with a descriptor file path, an authenticated user may convince systems to return a copy of the referenced file's contents from the server, resulting in unauthorized access to potentially sensitive data. All Nova deployments are affected. NOTE: this issue exists because of an incomplete fix for CVE-2022-47951 and CVE-2024-32498.


Published

2024-07-24T05:15:12.907

Last Modified

2025-03-19T15:15:48.103

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo
  • Type: Secondary
    CWE-552

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application openstack nova < 27.4.1 Yes
Application openstack nova < 28.2.1 Yes
Application openstack nova < 29.1.1 Yes

References