Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 571184 (CVE-2015-7548) - <=sys-cluster/nova-12.0.0 - Unprivileged api user can access host data using instance snapshot
Summary: <=sys-cluster/nova-12.0.0 - Unprivileged api user can access host data using ...
Status: RESOLVED FIXED
Alias: CVE-2015-7548
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo Security
URL: https://bugs.launchpad.net/bugs/1524274
Whiteboard: B3 [noglsa]
Keywords:
Depends on:
Blocks:
 
Reported: 2016-01-07 17:58 UTC by Matthew Thode ( prometheanfire )
Modified: 2016-06-30 11:44 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Matthew Thode ( prometheanfire ) archtester Gentoo Infrastructure gentoo-dev Security 2016-01-07 17:58:01 UTC
Matthew Booth from Red Hat reported a vulnerability in Nova instance
snapshot. By overwriting the disk inside an instance with a malicious
image and requesting a snapshot, an authenticated user would be able to
read an arbitrary file from the compute host. Note that the host file
needs to be readable by the nova user to be exposed except when using
lvm for instance storage, when all files readable by root are exposed.
Only setups using libvirt to spawn instances are vulnerable. Of these,
setups which use filesystem storage, and do not set "use_cow_images =
False" in Nova configuration are not affected. Setups which use ceph or
lvm for instance storage, and setups which use filesystem storage with
"use_cow_images = False" are all affected.
Comment 1 Matthew Thode ( prometheanfire ) archtester Gentoo Infrastructure gentoo-dev Security 2016-01-07 18:00:14 UTC

arches, please stablize =sys-cluster/nova-12.0.0-r1
Comment 2 Agostino Sarubbo gentoo-dev 2016-01-07 20:13:30 UTC
do you want to handle this before stabilize?
https://bugs.launchpad.net/nova/+bug/1516765
Comment 3 Matthew Thode ( prometheanfire ) archtester Gentoo Infrastructure gentoo-dev Security 2016-01-07 20:25:32 UTC
yes

arches, stablize =sys-cluster/nova-12.0.0-r2
Comment 4 Matthew Thode ( prometheanfire ) archtester Gentoo Infrastructure gentoo-dev Security 2016-01-08 13:31:33 UTC
cleaned up
Comment 5 Aaron Bauman Gentoo Infrastructure gentoo-dev Security 2016-06-30 11:44:27 UTC
GLSA Vote: No