Launch Week Day 1: Announcing Security Design Review
MEDIUM 5.5 PyPI

OpenStack Glance Signature Verification Bypass

GHSA-wmhw-fvg9-87fc · CVE-2015-8234 · PYSEC-2017-143

Published · Modified

Description

The image signature algorithm in OpenStack Glance 11.0.0 allows remote attackers to bypass the signature verification process via a crafted image, which triggers an MD5 collision.

Ready to move

Start Securing

Free, no credit card | First findings in minutes