Versions of nova before 2012.1 could expose hypervisor host files to a guest operating system when processing a maliciously constructed qcow filesystem.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://bazaar.launchpad.net/~hudson-openstack/nova/trunk/revision/1604 | third party advisory patch |