VDB

DEBIAN-CVE-2017-17051

DEBIAN-CVE-2017-17051 PUBLISHED CVSS 8.600000381469727 HIGH

An issue was discovered in the default FilterScheduler in OpenStack Nova 16.0.3. By repeatedly rebuilding an instance with new images, an authenticated user may consume untracked resources on a hypervisor host leading to a denial of service, aka doubled resource allocations. This regression was introduced with the fix for OSSA-2017-005 (CVE-2017-16239); however, only Nova stable/pike or later deployments with that fix applied and relying on the default FilterScheduler are affected.

Risk Scores

CVSS 3.0
8.600000381469727
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

Affected Products

VendorProductVersions
Debian:11nova0, 0, 0
Debian:12nova0, 0, 0
Debian:14nova0, 0, 0
Debian:13nova0, 0, 0

Timeline

  • Dec 5, 2017 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›