Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-0006

Опубликовано: 23 янв. 2014
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3

Описание

The TempURL middleware in OpenStack Object Storage (Swift) 1.4.6 through 1.8.0, 1.9.0 through 1.10.0, and 1.11.0 allows remote attackers to obtain secret URLs by leveraging an object name and a timing side-channel attack.

РелизСтатусПримечание
devel

not-affected

1.13.0-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [1.13.0-0ubuntu1]]
lucid

DNE

precise

released

1.4.8-0ubuntu2.4
quantal

released

1.7.4-0ubuntu2.4
raring

ignored

end of life
saucy

released

1.10.0-0ubuntu1.1
trusty

not-affected

1.13.0-0ubuntu1
trusty/esm

DNE

trusty was not-affected [1.13.0-0ubuntu1]
upstream

released

1.11.0-2

Показывать по

4.3 Medium

CVSS2

Связанные уязвимости

redhat
около 12 лет назад

The TempURL middleware in OpenStack Object Storage (Swift) 1.4.6 through 1.8.0, 1.9.0 through 1.10.0, and 1.11.0 allows remote attackers to obtain secret URLs by leveraging an object name and a timing side-channel attack.

nvd
около 12 лет назад

The TempURL middleware in OpenStack Object Storage (Swift) 1.4.6 through 1.8.0, 1.9.0 through 1.10.0, and 1.11.0 allows remote attackers to obtain secret URLs by leveraging an object name and a timing side-channel attack.

debian
около 12 лет назад

The TempURL middleware in OpenStack Object Storage (Swift) 1.4.6 throu ...

CVSS3: 7.5
github
больше 3 лет назад

OpenStack Swift Discloses Secret URLs to Timing Attack

4.3 Medium

CVSS2