CVE-2016-0738
HIGHOpenStack Swift <2.3.1-2.5.1 - DoS
Title source: llmDescription
OpenStack Object Storage (Swift) before 2.3.1 (Kilo), 2.4.x, and 2.5.x before 2.5.1 (Liberty) do not properly close server connections, which allows remote attackers to cause a denial of service (proxy-server resource consumption) via a series of interrupted requests to a Large Object URL.
References (9)
Scores
CVSS v3
7.5
EPSS
0.0580
EPSS Percentile
90.4%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Classification
CWE
CWE-399
Status
draft
Affected Products (4)
openstack/swift
< 2.3.0
openstack/swift
openstack/swift
pypi/swift
< 2.3.1PyPI
Timeline
Published
Jan 29, 2016
Tracked Since
Feb 18, 2026