Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Barclamp (aka barclamp-network) 1.7 for the Crowbar Framework, as used in SUSE Cloud 3, does not enable netfilter on bridges when creating new instances, which allows remote attackers to bypass security group restrictions via unspecified vectors, related to floating IPs.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Novell SUSE Cloud 权限许可和访问控制漏洞
Vulnerability Description
SUSE Cloud是美国Novell公司的一套用于部署和管理laaS(基础设施即服务)的私有云的开源企业级云计算平台。Crowbar是美国戴尔(Dell)公司的一套开源的软件框架,它为云中的硬件提供了部署、配置和管理工具。 SUSE Cloud 3版本使用Crowbar Framework的Barclamp 1.7版本中存在安全漏洞。当创建新的实例时,远程攻击者可利用该漏洞绕过安全组限制。
CVSS Information
N/A
Vulnerability Type
N/A