Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-4406

Опубликовано: 22 окт. 2012
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 7.5
CVSS3: 9.8

Описание

OpenStack Object Storage (swift) before 1.7.0 uses the loads function in the pickle Python module unsafely when storing and loading metadata in memcached, which allows remote attackers to execute arbitrary code via a crafted pickle object.

РелизСтатусПримечание
devel

not-affected

hardy

DNE

lucid

DNE

natty

ignored

end of life
oneiric

ignored

end of life
precise

released

1.4.8-0ubuntu2.2
quantal

not-affected

1.7.2-0ubuntu1
raring

not-affected

upstream

released

1.7.0

Показывать по

EPSS

Процентиль: 88%
0.04125
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3

Связанные уязвимости

redhat
больше 13 лет назад

OpenStack Object Storage (swift) before 1.7.0 uses the loads function in the pickle Python module unsafely when storing and loading metadata in memcached, which allows remote attackers to execute arbitrary code via a crafted pickle object.

CVSS3: 9.8
nvd
больше 13 лет назад

OpenStack Object Storage (swift) before 1.7.0 uses the loads function in the pickle Python module unsafely when storing and loading metadata in memcached, which allows remote attackers to execute arbitrary code via a crafted pickle object.

CVSS3: 9.8
debian
больше 13 лет назад

OpenStack Object Storage (swift) before 1.7.0 uses the loads function ...

CVSS3: 9.8
github
больше 3 лет назад

OpenStack Object Storage (swift) Code Injection vulnerability

EPSS

Процентиль: 88%
0.04125
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3