PT-2013-4876 · Openstack · Openstack Swift

Peter Portante

·

Publicado

2013-08-20

·

Atualizado

2022-05-17

·

CVE-2013-4155

CVSS v2.0

4.0

Média

VetorAV:N/AC:L/Au:S/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions OpenStack Swift versions prior to 1.9.1 in Folsom, Grizzly, and Havana
Description The issue allows authenticated users to cause a denial of service, leading to "superfluous" tombstone consumption and a slowdown of the Swift cluster. This can be achieved via a DELETE request with a timestamp that is older than expected.
Recommendations For OpenStack Swift versions prior to 1.9.1 in Folsom, Grizzly, and Havana, update to version 1.9.1 or later to resolve the issue.

Correção

DoS

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2013-4155
DSA-2737-1
GHSA-WXX2-GQVV-34HX
RHSA-2013:1197

Produtos afetados

Openstack Swift