CVE-2014-0162: Openstack Icehouse

Medium severity, CVSS 6.0. EPSS: 2% chance of exploitation in the next 30 days.

The Sheepdog backend in OpenStack Image Registry and Delivery Service (Glance) 2013.2 before 2013.2.4 and icehouse before icehouse-rc2 allows remote authenticated users with permission to insert or modify an image to execute arbitrary commands via a crafted location.

Affected products

  • Openstack Icehouse: version rc-1 only
  • Openstack Image Registry And Delivery Service (glance): version 2013.2 only; version 2013.2.1 only; version 2013.2.2 only; version 2013.2.3 only

Published 2014-04-27. Last modified 2026-06-17.