Bug 1378070

Summary: openstack-nova: Nova may fail to delete images in resize state regression
Product: [Other] Security Response Reporter: Andrej Nemec <anemec>
Component: vulnerabilityAssignee: Red Hat Product Security <security-response-team>
Status: CLOSED CURRENTRELEASE QA Contact:
Severity: medium Docs Contact:
Priority: medium    
Version: unspecifiedCC: abhgupta, aileenc, akscram, alexander.sakhnov, aortega, apevec, apevec, ayoung, berrange, bfilippov, chazlett, chrisw, cvsbot-xmlrpc, dasmith, davidx, dmcphers, eglynn, itamar, jialiu, jokerman, jonathansteffan, jose.castro.leon, jschluet, kbasil, kchamart, kseifried, lhh, lmeyer, lpeer, markmc, mlvov, mmagr, mmccomas, ndipanov, nlevinki, rbryant, rk, sbauza, sclewis, sferdjao, sgordon, srevivo, tdecacqu, tiwillia, vladanovic, vromanso
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2016-09-21 12:39:29 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:

Description Andrej Nemec 2016-09-21 12:38:28 UTC
It was reported from upstream that a vulnerability was found in Nova resize state. If an authenticated user deletes an instance while it is in resize state, it will cause the original instance to not be deleted from the compute node it was running on. An attacker can use this to launch a denial of service attack. All Nova setups are affected.

This vulnerability is similar to OSSA-2015-017 (CVE-2015-3280) and was re-introduced in the first release of Mitaka version of Nova and it was re-fixed in nova-13.1.0.

References:

http://seclists.org/oss-sec/2016/q3/577