VDB
KO

PYSEC-2012-42

Details

OpenStack Compute (Nova) Folsom before 2012.2.2 and Grizzly, when using libvirt and LVM backed instances, does not properly clear physical volume (PV) content when reallocating for instances, which allows attackers to obtain sensitive information by reading the memory of the previous logical volume (LV).

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI / nova

No fixed version published yet for nova (pip). Pin to a known-safe version or switch to an alternative.

References