CVE-2012-1572: High severity Openstack Keystone vulnerability
Published Nov 12, 2019
·Updated
OpenStack Keystone: extremely long passwords can crash Keystone by exhausting stack space
Affected Software
5 affected componentsFixes available
Openstack Keystone
Debian Debian Linux=8.0
Debian Debian Linux=9.0
Debian Debian Linux=10.0
debian/keystone
2:18.0.0-3+deb11u12:18.1.0-1+deb11u22:22.0.2-0+deb12u12:27.0.0-3+deb13u12:28.0.0-52:28.0.0-6
Remediation
Patch Available
Event History
Nov 12, 2019
CVE Published
via MITRE·04:48 PM
Data Sourced
via MITRE·04:48 PM
DescriptionWeakness
Feb 18, 2026
Data Sourced
via Debian·01:10 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is CVE-2012-1572?
CVE-2012-1572 is a vulnerability in OpenStack Keystone where extremely long passwords can crash Keystone by exhausting stack space.
2
How severe is CVE-2012-1572?
CVE-2012-1572 has a severity rating of 7.5, which is considered high.
3
Which software is affected by CVE-2012-1572?
OpenStack Keystone versions 2:14.2.0-0+deb10u1, 2:18.0.0-3+deb11u1, 2:22.0.0-2, and 2:24.0.0-1 are affected by CVE-2012-1572.
4
How can I fix CVE-2012-1572?
To fix CVE-2012-1572, you should update to a version of OpenStack Keystone that is not affected, such as versions after 2:24.0.0-1.
5
Where can I find more information about CVE-2012-1572?
You can find more information about CVE-2012-1572 on the Debian Security Tracker and Bugzilla.