CVE-2012-5482

OpenStack Glance Grizzly/Folsom/Essex - RCE

Title source: llm

Description

The v2 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to delete arbitrary non-protected images via an image deletion request. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-4573.

Scores

EPSS 0.0140
EPSS Percentile 80.2%

Classification

CWE
CWE-264
Status draft

Affected Products (4)

openstack/essex
openstack/folsom
openstack/image_registry_and_delivery_service_\(glance\)
pypi/glance < 11.0.0a0PyPI

Timeline

Published Nov 11, 2012
Tracked Since Feb 18, 2026