Launch Week Day 1: Announcing Security Design Review
MEDIUM 6.5 PyPI

OpenStack Keystone Denial of Service vulnerability via a large HTTP request

GHSA-4ppj-4p4v-jf4p · CVE-2013-0270

Published · Modified

Description

OpenStack Keystone Grizzly before 2013.1, Folsom, and possibly earlier allows remote attackers to cause a denial of service (CPU and memory consumption) via a large HTTP request, as demonstrated by a long tenant_name when requesting a token.

Ready to move

Start Securing

Free, no credit card | First findings in minutes