CVE-2013-2166

CRITICAL

Openstack Python-keystoneclient < 0.2.5 - Weak Encryption

Title source: rule

Description

python-keystoneclient version 0.2.3 to 0.2.5 has middleware memcache encryption bypass

Scores

CVSS v3 9.8
EPSS 0.0009
EPSS Percentile 25.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-326
Status published

Affected Products (7)

openstack/python-keystoneclient < 0.2.5
redhat/openstack
fedoraproject/fedora
debian/debian_linux
debian/debian_linux
debian/debian_linux
pypi/python-keystoneclient < 0.3.0PyPI

Timeline

Published Dec 10, 2019
Tracked Since Feb 18, 2026