CVE-2015-3280

OpenStack Compute <2014.2.4 - DoS

Title source: llm

Description

OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state.

Scores

EPSS 0.0080
EPSS Percentile 73.7%

Classification

CWE
CWE-399
Status draft

Affected Products (2)

openstack/nova < 2014.2.4
pypi/nova < 2014.2.4PyPI

Timeline

Published Oct 26, 2015
Tracked Since Feb 18, 2026