VYPR

by Red Hat

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2013-1815Med0.406.10.00Apr 10, 2013A flaw was found in PackStack. This vulnerability allows a local user to modify deployed systems by changing the answer file, which is created in insecure directories such as /tmp or the current working directory. This insecure file creation could lead to unauthorized system modifications.
CVE-2014-37030.000.00Dec 2, 2014OpenStack PackStack 2012.2.1, when the Open vSwitch (OVS) monolithic plug-in is not used, does not properly set the libvirt_vif_driver configuration option when generating the nova.conf configuration, which causes the firewall to be disabled and allows remote attackers to bypass intended access restrictions.