CVE-2013-0208

Openstack Essex - Access Control

Title source: rule

Description

The boot-from-volume feature in OpenStack Compute (Nova) Folsom and Essex, when using nova-volumes, allows remote authenticated users to boot from other users' volumes via a volume id in the block_device_mapping parameter.

Scores

EPSS 0.0095
EPSS Percentile 76.1%

Classification

CWE
CWE-264
Status draft

Affected Products (5)

openstack/essex
openstack/folsom
canonical/ubuntu_linux
canonical/ubuntu_linux
canonical/ubuntu_linux

Timeline

Published Feb 13, 2013
Tracked Since Feb 18, 2026