Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-8761

Опубликовано: 02 июн. 2021
Источник: debian
EPSS Низкий

Описание

In OpenStack Swift through 2.10.1, 2.11.0 through 2.13.0, and 2.14.0, the proxy-server logs full tempurl paths, potentially leaking reusable tempurl signatures to anyone with read access to these logs. All Swift deployments using the tempurl middleware are affected.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
swiftfixed2.17.0-2package
swiftno-dsastretchpackage
swiftend-of-lifejessiepackage

Примечания

  • https://bugs.launchpad.net/swift/+bug/1685798

EPSS

Процентиль: 38%
0.00167
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 4 лет назад

In OpenStack Swift through 2.10.1, 2.11.0 through 2.13.0, and 2.14.0, the proxy-server logs full tempurl paths, potentially leaking reusable tempurl signatures to anyone with read access to these logs. All Swift deployments using the tempurl middleware are affected.

CVSS3: 2.2
redhat
больше 5 лет назад

In OpenStack Swift through 2.10.1, 2.11.0 through 2.13.0, and 2.14.0, the proxy-server logs full tempurl paths, potentially leaking reusable tempurl signatures to anyone with read access to these logs. All Swift deployments using the tempurl middleware are affected.

CVSS3: 4.3
nvd
больше 4 лет назад

In OpenStack Swift through 2.10.1, 2.11.0 through 2.13.0, and 2.14.0, the proxy-server logs full tempurl paths, potentially leaking reusable tempurl signatures to anyone with read access to these logs. All Swift deployments using the tempurl middleware are affected.

github
больше 4 лет назад

Temporary urls leaked via logging

CVSS3: 4.3
fstec
почти 9 лет назад

Уязвимость логов proxy-сервера промежуточного ПО tempurl распределенной системы хранения объектов Swift, связанная с раскрытием информации, позволяющая нарушителю получить доступ к конфиденциальным данным

EPSS

Процентиль: 38%
0.00167
Низкий