OpenStack Object Storage (Swift) before 2.3.1 (Kilo), 2.4.x, and 2.5.x before 2.5.1 (Liberty) do not properly close server connections, which allows remote attackers to cause a denial of service (proxy-server resource consumption) via a series of interrupted requests to a Large Object URL.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| swift(PyPI) | 0 | 2.3.1 | N/A |
| swift(PyPI) | 2.4.0 | 2.5.1 | N/A |
CVSS Metrics