{"id":"CVE-2011-4596","aliases":["GHSA-qr62-r9xc-r2gj","PYSEC-2026-881"],"title":"OpenStack Nova Multiple directory traversal vulnerabilities","summary":"OpenStack Nova Multiple directory traversal vulnerabilities","severity":"medium","vendor":"nova","product":"nova","ecosystem":"pip","affected":["nova < 12.0.0a0"],"patched":["nova 12.0.0a0"],"published":"2022-05-14","updated":"2026-07-07","source":"OSV","sourceUrl":"https://osv.dev/vulnerability/GHSA-qr62-r9xc-r2gj","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2011-4596"},{"url":"https://github.com/openstack/nova/commit/76363226bd8533256f7795bba358d7f4b8a6c9e6"},{"url":"https://github.com/openstack/nova/commit/ad3241929ea00569c74505ed002208ce360c667e"},{"url":"https://bugs.launchpad.net/nova/+bug/885167"},{"url":"https://bugs.launchpad.net/nova/+bug/894755"},{"url":"https://github.com/openstack/nova"},{"url":"https://lists.launchpad.net/openstack/msg06105.html"}],"tags":["osv","pip"],"epss":0.01761,"epssPercentile":0.76698,"ingestedAt":"2026-07-08T18:25:52.475Z","slug":"CVE-2011-4596","body":"## Overview\n\nMultiple directory traversal vulnerabilities in OpenStack Nova before 2011.3.1, when the EC2 API and the S3/RegisterImage image-registration method are enabled, allow remote authenticated users to overwrite arbitrary files via a crafted (1) tarball or (2) manifest.\n\n## Affected packages\n\n- `nova < 12.0.0a0`\n\n## Remediation\n\nUpgrade to a patched release:\n\n- `nova 12.0.0a0`","depth":"sunlit","depthScore":28,"depthScoreParts":{"impact":27.5,"likelihood":0.4,"exploitation":0,"ransomware":0},"changes":[]}