CVE-2015-3289: Openstack Glance

Medium severity, CVSS 4.0. EPSS: 1.3% chance of exploitation in the next 30 days.

OpenStack Glance before 2015.1.1 (kilo) allows remote authenticated users to cause a denial of service (disk consumption) by repeatedly using the import task flow API to create images and then deleting them.

Affected products

  • Openstack Glance: up to and including 2015.1.0

Published 2015-08-14. Last modified 2026-06-17.