RHEL 6 : openstack-glance (Unpatched Vulnerability)
Discription

The remote Redhat Enterprise Linux 6 host has one or more packages installed that are affected by multiple vulnerabilities that have been acknowledged by the vendor but will not be patched. openstack-glance: API v1 copy_from reveals network details (CVE-2017-7200) A vulnerability was found in Openstack Glance. No limits are enforced within the Glance image service for both v1 and v2 /images API POST method for authenticated users, resulting in possible denial of service attacks through database table saturation. (CVE-2016-8611) Note that Nessus has not tested for these issues but has instead relied on the package manager's report that the package is…Read More

Back to Main

Subscribe for the latest news: