CVE-2013-4155: Buffer Overflow
OpenStack Swift before 1.9.1 in Folsom, Grizzly, and Havana allows authenticated users to cause a denial of service ("superfluous" tombstone consumption and Swift cluster slowdown) via a DELETE request with a timestamp that is older than expected.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-4155?
CVE-2013-4155 has a moderate severity level and can lead to denial of service due to superfluous tombstone consumption.
How do I fix CVE-2013-4155?
To fix CVE-2013-4155, upgrade OpenStack Swift to version 1.9.1 or later.
Which OpenStack versions are affected by CVE-2013-4155?
CVE-2013-4155 affects OpenStack Swift versions prior to 1.9.1, specifically Folsom, Grizzly, and Havana.
What is the impact of CVE-2013-4155?
The impact of CVE-2013-4155 includes potential slowdown of the Swift cluster and denial of service for authenticated users.
Who is impacted by CVE-2013-4155?
Authenticated users of OpenStack Swift installations running affected versions are impacted by CVE-2013-4155.