Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2012-5625 | First vendor Publication | 2012-12-26 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:M/Au:N/C:P/I:N/A:N) | |||
---|---|---|---|
Cvss Base Score | 4.3 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | Medium |
Cvss Expoit Score | 8.6 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
OpenStack Compute (Nova) Folsom before 2012.2.2 and Grizzly, when using libvirt and LVM backed instances, does not properly clear physical volume (PV) content when reallocating for instances, which allows attackers to obtain sensitive information by reading the memory of the previous logical volume (LV). |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5625 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-200 | Information Exposure |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:17878 | |||
Oval ID: | oval:org.mitre.oval:def:17878 | ||
Title: | USN-1663-1 -- nova vulnerability | ||
Description: | Nova could be made to expose sensitive information. | ||
Family: | unix | Class: | patch |
Reference(s): | USN-1663-1 CVE-2012-5625 | Version: | 7 |
Platform(s): | Ubuntu 12.10 | Product(s): | nova |
Definition Synopsis: | |||
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Application | 1 | |
Application | 1 |
OpenVAS Exploits
Date | Description |
---|---|
2012-12-14 | Name : Ubuntu Update for nova USN-1663-1 File : nvt/gb_ubuntu_USN_1663_1.nasl |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2013-01-14 | Name : The remote Fedora host is missing a security update. File : fedora_2012-20462.nasl - Type : ACT_GATHER_INFO |
2012-12-13 | Name : The remote Ubuntu host is missing a security-related patch. File : ubuntu_USN-1663-1.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 22:58:43 |
|
2024-11-28 12:32:26 |
|
2021-05-04 12:22:36 |
|
2021-04-22 01:27:00 |
|
2020-05-23 00:35:18 |
|
2016-06-28 22:10:23 |
|
2014-02-17 11:14:28 |
|
2013-05-10 22:49:49 |
|
2013-02-15 13:20:40 |
|
2012-12-27 21:18:53 |
|
2012-12-27 13:18:35 |
|