Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-0006

Опубликовано: 23 янв. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3

Описание

The TempURL middleware in OpenStack Object Storage (Swift) 1.4.6 through 1.8.0, 1.9.0 through 1.10.0, and 1.11.0 allows remote attackers to obtain secret URLs by leveraging an object name and a timing side-channel attack.

РелизСтатусПримечание
devel

not-affected

1.13.0-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [1.13.0-0ubuntu1]]
lucid

DNE

precise

released

1.4.8-0ubuntu2.4
quantal

released

1.7.4-0ubuntu2.4
raring

ignored

end of life
saucy

released

1.10.0-0ubuntu1.1
trusty

not-affected

1.13.0-0ubuntu1
trusty/esm

DNE

trusty was not-affected [1.13.0-0ubuntu1]
upstream

released

1.11.0-2

Показывать по

EPSS

Процентиль: 78%
0.01895
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
больше 12 лет назад

The TempURL middleware in OpenStack Object Storage (Swift) 1.4.6 through 1.8.0, 1.9.0 through 1.10.0, and 1.11.0 allows remote attackers to obtain secret URLs by leveraging an object name and a timing side-channel attack.

nvd
больше 12 лет назад

The TempURL middleware in OpenStack Object Storage (Swift) 1.4.6 through 1.8.0, 1.9.0 through 1.10.0, and 1.11.0 allows remote attackers to obtain secret URLs by leveraging an object name and a timing side-channel attack.

debian
больше 12 лет назад

The TempURL middleware in OpenStack Object Storage (Swift) 1.4.6 throu ...

CVSS3: 7.5
github
около 4 лет назад

OpenStack Swift Discloses Secret URLs to Timing Attack

EPSS

Процентиль: 78%
0.01895
Низкий

4.3 Medium

CVSS2