CyberRota Analysis
This is a low severity vulnerability with a CVSS score of 2.7. It affects VMware, VMWare. It may be remotely exploitable. Exploitation may require the attacker to be authenticated. It may lead to a denial-of-service condition.
CVE
CVE-2014-3608
Severity
LOW
CVSS
2.7
EPSS
1.71%
VMware VMWare
Original NVD Description
The VMWare driver in OpenStack Compute (Nova) before 2014.1.3 allows remote authenticated users to bypass the quota limit and cause a denial of service (resource consumption) by putting the VM into the rescue state, suspending it, which puts into an ERROR state, and then deleting the image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-2573.