Critical OpenStack Vulnerability Exposes Cloud Data

Amber | Vulnerability Report
Download PDF

CVE-2024-32498 is a critical vulnerability in OpenStack’s Cinder, Glance, and Nova components, allowing unauthorized file access through crafted QCOW2 images. This flaw can lead to exposure of sensitive data by manipulating image file paths. Patches have been released to address the issue, and applying these updates is essential to mitigate risks.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox