The clear_volume function in LVMVolumeDriver driver in OpenStack Cinder 2013.1.1 through 2013.1.2 does not properly clear data when deleting a snapshot, which allows local users to obtain sensitive information via unspecified vectors.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2013-09-16 19:14
Updated : 2025-04-11 00:51
NVD link : CVE-2013-4183
Mitre link : CVE-2013-4183
CVE.ORG link : CVE-2013-4183
JSON object : View
Products Affected
openstack
- cinder
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor