CVE-2013-4497

Source
https://nvd.nist.gov/vuln/detail/CVE-2013-4497
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2013-4497.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2013-4497
Aliases
Downstream
Published
2013-11-05T20:55:29Z
Modified
2025-08-09T20:01:26Z
Summary
[none]
Details

The XenAPI backend in OpenStack Compute (Nova) Folsom, Grizzly, and Havana before 2013.2 does not properly apply security groups (1) when resizing an image or (2) during live migration, which allows remote attackers to bypass intended restrictions.

References

Affected packages