VDB
CVE-2015-1881
CVE-2015-1881
PUBLISHED
CVSS 4 MEDIUM
OpenStack Glance Denial of service by creating a large number of images
EPSS 0.58% · 69.3th percentile
Risk Scores
CVSS 2.0
4
EPSS Score
0.58%
69.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| PyPI | glance | 0 |
| n/a | n/a | n/a |
| openstack | image_registry_and_delivery_service_\(glance\) | 2014.2, 2014.2.1, 2014.2.2 |
Timeline
- Feb 24, 2015 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 3, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 8, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Jul 16, 2023 EPSS Score
- Sep 7, 2023 EPSS Score
References
- [openstack-announce] 20150223 [OSSA 2015-004] Glance import task leaks image in backend (CVE-2014-9684, CVE-2015-1881) mailing-list
- RHSA-2015:0938 vendor-advisory
- https://bugs.launchpad.net/glance/+bug/1420696 url
- 72694 vdb
- https://nvd.nist.gov/vuln/detail/CVE-2015-1881 advisory
- https://github.com/openstack/glance/commit/25a722e614eacc47e4658f0bca6343fa52f7d03f url
- https://github.com/openstack/glance/commit/78b5b0a9575cd5e9c4543ec0e8fd6072af1f0ebb url
- https://github.com/openstack/glance package
- https://github.com/pypa/advisory-database/tree/main/vulns/glance/PYSEC-2015-38.yaml url