CVE-2012-4406

critical
Published 2012-10-22 ยท Modified 2024-02-16
CVSS v3
9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
9.8

Description

OpenStack Object Storage (swift) before 1.7.0 uses the loads function in the pickle Python module unsafely when storing and loading metadata in memcached, which allows remote attackers to execute arbitrary code via a crafted pickle object.

Predictions

Exploit likelihood
97%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

Mitigation details

Source: Debian Security Tracker ยท View original โ†— ยท DFSG

CVE-2012-4406 NameCVE-2012-4406 DescriptionOpenStack Object Storage (swift) before 1.7.0 uses the loads function in the pickle Python module unsafely when storing and loading metadata in memcached, which allows remote attackers to execute arbitrary code via a crafted pickle object. SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE,โ€ฆ

CVE-2012-4406

NameCVE-2012-4406
DescriptionOpenStack Object Storage (swift) before 1.7.0 uses the loads function in the pickle Python module unsafely when storing and loading metadata in memcached, which allows remote attackers to execute arbitrary code via a crafted pickle object.
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs686812

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
swift (PTS)bullseye2.26.0-10+deb11u1fixed
bullseye (security)2.26.0-10+deb11u2fixed
bookworm, bookworm (security)2.30.1-0+deb12u1fixed
trixie2.35.1-0+deb13u1fixed
trixie (security)2.35.1-0+deb13u2fixed
sid, forky2.37.1-4fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
swiftsource(unstable)1.4.8-2686812

Home - Debian Security - Source (Git)

OS impact

fedora Fedora Affected 1 release
VersionStatusFixed in
16 Affected โ€”
redhat Red Hat Affected 2 releases
VersionStatusFixed in
6.0 Affected โ€”
5.0 Affected โ€”
debian Debian Fixed 5 releases
VersionStatusFixed in
trixie Fixed 1.4.8-2
sid Fixed 1.4.8-2
forky Fixed 1.4.8-2
bullseye Fixed 1.4.8-2
bookworm Fixed 1.4.8-2

Package impact

EcosystemPackageVulnerableFixed
python PyPIswift<1.7.01.7.0

Application impact

VendorProductVersionsFixed
openstackswift{"endExcluding":"1.7.0"}1.7.0
redhat redhatgluster_storage_management_console2.0
redhat redhatgluster_storage_server_for_on-premise2.0
redhat redhatstorage2.0
redhat redhatstorage_for_public_cloud2.0

References

CWEs

CWE-502

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.