|
|
| |
|
| |
openstack-swift: insecure use of python pickle
| Package(s): | openstack-swift |
CVE #(s): | CVE-2012-4406
|
| Created: | October 8, 2012 |
Updated: | October 18, 2012 |
| Description: |
From the Red Hat bugzilla:
Sebastian Krahmer (krahmer@suse.de) reports:
swift uses pickle to store and load meta data. pickle is insecure
and allows to execute arbitrary code in loads(). |
| Alerts: |
|
( Log in to post comments)
|
|
|