FusionCompute V100R005C00 and V100R005C10 have an improper authorization vulnerability due to improper permission settings for a certain file on the host machine. An authenticated attacker could create a large number of virtual machine (VM) processes to exhaust system resources. Successful exploit could make new VMs unavailable.
References
Link | Resource |
---|---|
http://www.huawei.com/en/psirt/security-advisories/2017/huawei-sa-20170927-01-dos-en | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: huawei
Published: 2017-11-15T00:00:00
Updated: 2017-11-22T18:57:01
Reserved: 2017-04-25T00:00:00
Link: CVE-2017-8158
JSON object: View
NVD Information
Status : Analyzed
Published: 2017-11-22T19:29:03.647
Modified: 2019-10-03T00:03:26.223
Link: CVE-2017-8158
JSON object: View
Redhat Information
No data.
CWE