CVE-2012-3371

Source
https://nvd.nist.gov/vuln/detail/CVE-2012-3371
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2012-3371.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2012-3371
Aliases
Published
2012-07-17T21:55:02Z
Modified
2024-11-22T04:59:52.594259Z
Summary
[none]
Details

The Nova scheduler in OpenStack Compute (Nova) Folsom (2012.2) and Essex (2012.1), when DifferentHostFilter or SameHostFilter is enabled, allows remote authenticated users to cause a denial of service (excessive database lookup calls and server hang) via a request with many repeated IDs in the os:scheduler_hints section.

References

Affected packages

Debian:11 / nova

Package

Name
nova
Purl
pkg:deb/debian/nova?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2012.1.1-5

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / nova

Package

Name
nova
Purl
pkg:deb/debian/nova?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2012.1.1-5

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / nova

Package

Name
nova
Purl
pkg:deb/debian/nova?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2012.1.1-5

Ecosystem specific

{
    "urgency": "not yet assigned"
}