PublicDateAtUSN: 2013-08-07 15:00:00 UTC Candidate: CVE-2013-4155 CRD: 2013-08-07 15:00:00 UTC PublicDate: 2013-08-20 22:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4155 https://ubuntu.com/security/notices/USN-2001-1 Description: OpenStack Swift before 1.9.1 in Folsom, Grizzly, and Havana allows authenticated users to cause a denial of service ("superfluous" tombstone consumption and Swift cluster slowdown) via a DELETE request with a timestamp that is older than expected. Ubuntu-Description: Notes: Bugs: https://bugs.launchpad.net/swift/+bug/1196932 Priority: medium Discovered-by: Peter Portante Assigned-to: jdstrand CVSS: Patches_swift: upstream: https://review.openstack.org/#/c/40646/ (folsom) upstream: https://review.openstack.org/#/c/40645/ (grizzly) upstream_swift: released (1.9.1) lucid_swift: DNE precise_swift: released (1.4.8-0ubuntu2.3) quantal_swift: released (1.7.4-0ubuntu2.3) raring_swift: released (1.8.0-0ubuntu1.3) saucy_swift: not-affected (1.9.1-0ubuntu1) devel_swift: not-affected (1.9.1-0ubuntu1)