CVE-2015-3241 affects OpenStack Compute (nova) versions 2015.1 through 2015.1.1, and 2014.2.3 and earlier. This vulnerability allows remote authenticated users to trigger a denial of service by resizing and then deleting an instance, as the migration process fails to stop. With a CVSS score of 6.8 (Medium), this flaw has a network attack vector and low complexity, leading to high availability impact through resource consumption. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 2014.2, <= 2014.2.3CPE matchmatch criteria | cpe:2.3:a:openstack:nova:*:*:*:*:*:*:*:* | ||
>= 2015.1.0, <= 2015.1.1CPE matchmatch criteria | cpe:2.3:a:openstack:nova:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:S/C:N/I:N/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.