Description

In OpenStack Nova before 27.4.1, 28 before 28.2.1, and 29 before 29.1.1, by supplying a raw format image that is actually a crafted QCOW2 image with a backing file path or VMDK flat image with a descriptor file path, an authenticated user may convince systems to return a copy of the referenced file's contents from the server, resulting in unauthorized access to potentially sensitive data. All Nova deployments are affected. NOTE: this issue exists because of an incomplete fix for CVE-2022-47951 and CVE-2024-32498.

INFO

Published Date :

2024-07-24T00:00:00.000Z

Last Modified :

2025-11-04T16:12:31.887Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2024-40767 vulnerability.

Vendors Products
Openstack
  • Nova
Redhat
  • Openstack

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact