OpenStack Object Storage (Swift) before 2.3.1 (Kilo), 2.4.x, and 2.5.x before 2.5.1 (Liberty) do not properly close server connections, which allows remote attackers to cause a denial of service (proxy-server resource consumption) via a series of interrupted requests to a Large Object URL.
| Software | From | Fixed in |
|---|---|---|
| openstack / swift | 2.5.0 | 2.5.0.x |
| openstack / swift | 2.4.0 | 2.4.0.x |
| openstack / swift | - | 2.3.0.x |
swift
|
- | 2.3.1 |
swift
|
2.4.0 | 2.5.1 |