PT-2013-4876 · Openstack · Openstack Swift

Peter Portante

·

Published

2013-08-20

·

Updated

2022-05-17

·

CVE-2013-4155

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions OpenStack Swift versions prior to 1.9.1 in Folsom, Grizzly, and Havana
Description The issue allows authenticated users to cause a denial of service, leading to "superfluous" tombstone consumption and a slowdown of the Swift cluster. This can be achieved via a DELETE request with a timestamp that is older than expected.
Recommendations For OpenStack Swift versions prior to 1.9.1 in Folsom, Grizzly, and Havana, update to version 1.9.1 or later to resolve the issue.

Fix

DoS

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-4155
DSA-2737-1
GHSA-WXX2-GQVV-34HX
RHSA-2013:1197

Affected Products

Openstack Swift