CVE-2012-5625

OpenStack Compute (Nova) Folsom before 2012.2.2 and Grizzly, when using libvirt and LVM backed instances, does not properly clear physical volume (PV) content when reallocating for instances, which allows attackers to obtain sensitive information by reading the memory of the previous logical volume (LV).
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:openstack:folsom:2012.2:*:*:*:*:*:*:*
cpe:2.3:a:openstack:grizzly:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2012-12-26 22:55

Updated : 2023-12-10 11:16


NVD link : CVE-2012-5625

Mitre link : CVE-2012-5625

CVE.ORG link : CVE-2012-5625


JSON object : View

Products Affected

openstack

  • folsom
  • grizzly
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor