CVE

Id
82440  
CVE No.
CVE-2015-5163  
Status
Candidate  
Description
The import task action in OpenStack Image Service (Glance) 2015.1.x before 2015.1.2 (kilo), when using the V2 API, allows remote authenticated users to read arbitrary files via a crafted backing file for a qcow2 image.  
Phase
Assigned (20150701)  
Votes
None (candidate not yet proposed)  
Comments