Bug 1519231 (CVE-2017-17051)
Summary: | CVE-2017-17051 openstack-nova: Nova FilterScheduler doubles resource allocations during rebuild with new image | ||
---|---|---|---|
Product: | [Other] Security Response | Reporter: | Andrej Nemec <anemec> |
Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> |
Status: | CLOSED NOTABUG | QA Contact: | |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | unspecified | CC: | apevec, berrange, chrisw, dasmith, eglynn, jjoyce, jschluet, kbasil, kchamart, lhh, lpeer, markmc, mburns, nlevinki, rbryant, sbauza, sclewis, security-response-team, sferdjao, sgordon, slinaber, srevivo, tdecacqu, vromanso |
Target Milestone: | --- | Keywords: | Security |
Target Release: | --- | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | If docs needed, set a value | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2017-12-07 05:32:37 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | |||
Bug Blocks: | 1508541 |
Description
Andrej Nemec
2017-11-30 13:14:27 UTC
Acknowledgments: Name: the OpenStack project Upstream: Matt Riedemann (Huawei) Statement: This vulnerability was caused by the fix for a prior vulnerability (CVE-2017-16239). No patches for the earlier vulnerability were released for Red Hat OpenStack before the discover of the new vulnerability. Therefore, current versions of Red Hat OpenStack are not affected by this vulnerability. |