CVE-2013-0335

OpenStack Compute Nova Unauthorised access to arbitrary VM using VNC token from deleted VM

Description

OpenStack Compute (Nova) Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to gain access to a VM in opportunistic circumstances by using the VNC token for a deleted VM that was bound to the same VNC port.

Metrics

Severity
high
no public PoC known
7.6
Source: nvd-v3
80.8 %
Critical — this CVE ranks in the top fifth of all CVEs scored today (rank ≥ 80%).
2.1 %
Moderate — model estimates 1-10% exploitation likelihood.
Published
2022-05-05 02:48 UTC
CWE-613

Weakness classes (CWE)

  • CWE-613Base

    Insufficient Session Expiration

    According to WASC, "Insufficient Session Expiration is when a web site permits an attacker to reuse old session credentials or session IDs for authorization."

    cwe.mitre.org →

Reanalysis & status changes

Chronological NVD audit events for this CVE — reanalyses, CVSS updates, CPE diffs.

  1. CVE Modified2026-07-31 15:16 UTC· secalert@redhat.com
    • CVSS V3.1: AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L
    • CWE: CWE-613
    • Reference: https://access.redhat.com/errata/RHSA-2013:0709
    • Reference: https://access.redhat.com/security/cve/CVE-2013-0335

Affected operating systems

  • linux

    canonical / ubuntu_linux11.10

  • linux

    canonical / ubuntu_linux12.04

  • linux

    canonical / ubuntu_linux12.10

Affected products

Products and version ranges extracted from the vendor/CERT advisory. A range like „<4.14.6“ implies the update recommendation „upgrade to 4.14.6 or later“.

  • openstack

    essex

  • openstack

    folsom

  • openstack

    grizzly

References & sources

IDCVE-2013-0335