Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2013-0270

Опубликовано: 12 апр. 2013
Источник: nvd
CVSS3: 6.5
CVSS2: 5
EPSS Низкий

Описание

A flaw was found in OpenStack Keystone. A remote attacker could exploit this vulnerability by sending a large HTTP request, specifically by providing a long tenant name when requesting a token. This could lead to a denial of service, consuming excessive CPU and memory resources on the affected system.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:openstack:keystone:*:*:*:*:*:*:*:*
Версия от 2012.1 (включая) до 2012.1.3 (включая)
cpe:2.3:a:openstack:keystone:*:*:*:*:*:*:*:*
Версия от 2012.2 (включая) до 2012.2.4 (включая)
cpe:2.3:a:openstack:keystone:2013.1:milestone1:*:*:*:*:*:*
cpe:2.3:a:openstack:keystone:2013.1:milestone2:*:*:*:*:*:*
cpe:2.3:a:openstack:keystone:2013.1:milestone3:*:*:*:*:*:*

EPSS

Процентиль: 87%
0.03139
Низкий

6.5 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-1284
CWE-119

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 13 лет назад

A flaw was found in OpenStack Keystone. A remote attacker could exploit this vulnerability by sending a large HTTP request, specifically by providing a long tenant name when requesting a token. This could lead to a denial of service, consuming excessive CPU and memory resources on the affected system.

CVSS3: 6.5
redhat
больше 13 лет назад

A flaw was found in OpenStack Keystone. A remote attacker could exploit this vulnerability by sending a large HTTP request, specifically by providing a long tenant name when requesting a token. This could lead to a denial of service, consuming excessive CPU and memory resources on the affected system.

CVSS3: 6.5
debian
больше 13 лет назад

A flaw was found in OpenStack Keystone. A remote attacker could exploi ...

CVSS3: 6.5
github
больше 4 лет назад

OpenStack Keystone Denial of Service vulnerability via a large HTTP request

EPSS

Процентиль: 87%
0.03139
Низкий

6.5 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-1284
CWE-119