Junglewise Threat Intelligence

CVE-2014-0006: PYSEC-2014-116 - The TempURL middleware in OpenStack Object Storage (Swift) 1.4.6 through 1.8.0, 1.9.0 through 1.10.0, and 1.11.0 allows remote attackers to

CVE-2014-0006 · Severity: low · CVSS 3.1 · Published 2014-01-23

Technologies: swift (PyPI). Vendors: PyPI.

Executive brief

The TempURL middleware in OpenStack Object Storage (Swift) 1.4.6 through 1.8.0, 1.9.0 through 1.10.0, and 1.11.0 allows remote attackers to obtain secret URLs by leveraging an object name and a timing side-channel attack.

Affected products

  • PyPI swift

Related threats