CVE-2011-3147

Publication date 22 April 2019

Last updated 25 August 2025


Ubuntu priority

Cvss 3 Severity Score

8.6 · High

Score breakdown

Description

Versions of nova before 2012.1 could expose hypervisor host files to a guest operating system when processing a maliciously constructed qcow filesystem.

Status

Package Ubuntu Release Status
nova 13.04 raring
Not affected
12.10 quantal
Not affected
12.04 LTS precise
Not affected
10.04 LTS lucid Not in release

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
nova

Severity score breakdown

CVSS version: CVSS v3.0

Base score 8.6 · High

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N


Access our resources on patching vulnerabilities