Description
In OpenStack Swift through 2.10.1, 2.11.0 through 2.13.0, and 2.14.0, the proxy-server logs full tempurl paths, potentially leaking reusable tempurl signatures to anyone with read access to these logs. All Swift deployments using the tempurl middleware are affected.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-1291 | In OpenStack Swift through 2.10.1, 2.11.0 through 2.13.0, and 2.14.0, the proxy-server logs full tempurl paths, potentially leaking reusable tempurl signatures to anyone with read access to these logs. All Swift deployments using the tempurl middleware are affected. |
Github GHSA |
GHSA-8fxc-qm65-vpxg | Temporary urls leaked via logging |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T16:48:22.443Z
Reserved: 2017-05-03T00:00:00.000Z
Link: CVE-2017-8761
No data.
Status : Modified
Published: 2021-06-02T14:15:07.753
Modified: 2024-11-21T03:34:38.637
Link: CVE-2017-8761
OpenCVE Enrichment
No data.
EUVD
Github GHSA