[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2012-3426Date: (C)2012-07-31   (M)2023-12-22


OpenStack Keystone before 2012.1.1, as used in OpenStack Folsom before Folsom-1 and OpenStack Essex, does not properly implement token expiration, which allows remote authenticated users to bypass intended authorization restrictions by (1) creating new tokens through token chaining, (2) leveraging possession of a token for a disabled user account, or (3) leveraging possession of a token for an account with a changed password.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 4.9
Exploit Score: 6.8
Impact Score: 4.9
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: MEDIUM
Authentication: SINGLE
Confidentiality: PARTIAL
Integrity: PARTIAL
Availability: NONE
  
Reference:
SECUNIA-50045
SECUNIA-50494
USN-1552-1
http://www.openwall.com/lists/oss-security/2012/07/27/4
http://github.com/openstack/keystone/commit/29e74e73a6e51cffc0371b32354558391826a4aa
http://github.com/openstack/keystone/commit/375838cfceb88cacc312ff6564e64eb18ee6a355
http://github.com/openstack/keystone/commit/628149b3dc6b58b91fd08e6ca8d91c728ccb8626
http://github.com/openstack/keystone/commit/a67b24878a6156eab17b9098fa649f0279256f5d
http://github.com/openstack/keystone/commit/d9600434da14976463a0bd03abd8e0309f0db454
http://github.com/openstack/keystone/commit/ea03d05ed5de0c015042876100d37a6a14bf56de
https://bugs.launchpad.net/keystone/+bug/996595
https://bugs.launchpad.net/keystone/+bug/997194
https://bugs.launchpad.net/keystone/+bug/998185
https://launchpad.net/keystone/essex/2012.1.1/+download/keystone-2012.1.1.tar.gz

CPE    3
cpe:/a:openstack:keystone:2012.1
cpe:/a:openstack:keystone:2012.1.1
cpe:/a:openstack:horizon:folsom-1
CWE    1
CWE-264
OVAL    4
oval:org.secpod.oval:def:701082
oval:org.secpod.oval:def:700984
oval:org.secpod.oval:def:104370
oval:org.secpod.oval:def:104205
...

© SecPod Technologies