CVE-2012-5571
published 2012-12-18CVE-2012-5571: A flaw was found in OpenStack Keystone. This vulnerability allows remote authenticated users to bypass intended authorization restrictions. This occurs because…
PriorityP430medium5.4CVSS 3.1
AVNACLPRLUINSUCLILAN
EPSS
2.04%
78.9th percentile
A flaw was found in OpenStack Keystone. This vulnerability allows remote authenticated users to bypass intended authorization restrictions. This occurs because OpenStack Keystone does not properly handle EC2 (Elastic Compute Cloud) tokens when a user's role has been removed from a tenant. An attacker can leverage a token associated with a removed user role to gain unauthorized access.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | keystone | < keystone 2012.1.1-11 (bookworm) | keystone 2012.1.1-11 (bookworm) |
| openstack | essex | — | — |
| openstack | folsom | — | — |
| openstack | keystone | >= 0 < 2012.1.1-11 | 2012.1.1-11 |
| openstack | keystone | >= 0 < 2012.1.1-11 | 2012.1.1-11 |
| openstack | keystone | >= 0 < 2012.1.1-11 | 2012.1.1-11 |
| openstack | keystone | >= 0 < 2012.1.1-11 | 2012.1.1-11 |
| openstack | keystone | >= 0 < 8.0.0a0 | 8.0.0a0 |
CVSS provenance
nvdv3.15.4MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
nvdv2.03.5LOWAV:N/AC:M/Au:S/C:N/I:P/A:N
osv5.4MEDIUM
vendor_debian5.4MEDIUM
vendor_redhat5.4MEDIUM
vendor_ubuntu4.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
OpenStack Keystone intended authorization restrictions bypass
ghsa·2022-05-17
CVE-2012-5571 [MEDIUM] CWE-639 OpenStack Keystone intended authorization restrictions bypass
OpenStack Keystone intended authorization restrictions bypass
OpenStack Keystone Essex (2012.1) and Folsom (2012.2) does not properly handle EC2 tokens when the user role has been removed from a tenant, which allows remote authenticated users to bypass intended authorization restrictions by leveraging a token for the removed user role.
OSV
OpenStack Keystone intended authorization restrictions bypass
osv·2022-05-17
CVE-2012-5571 [MEDIUM] OpenStack Keystone intended authorization restrictions bypass
OpenStack Keystone intended authorization restrictions bypass
OpenStack Keystone Essex (2012.1) and Folsom (2012.2) does not properly handle EC2 tokens when the user role has been removed from a tenant, which allows remote authenticated users to bypass intended authorization restrictions by leveraging a token for the removed user role.
OSV
CVE-2012-5571: A flaw was found in OpenStack Keystone
osv·2012-12-18·CVSS 5.4
CVE-2012-5571 [MEDIUM] CVE-2012-5571: A flaw was found in OpenStack Keystone
A flaw was found in OpenStack Keystone. This vulnerability allows remote authenticated users to bypass intended authorization restrictions. This occurs because OpenStack Keystone does not properly handle EC2 (Elastic Compute Cloud) tokens when a user's role has been removed from a tenant. An attacker can leverage a token associated with a removed user role to gain unauthorized access.
Red Hat
CVE-2012-5571: A flaw was found in OpenStack Keystone
vendor_redhat·2012-12-18·CVSS 5.4
CVE-2012-5571 [MEDIUM] CWE-639 CVE-2012-5571: A flaw was found in OpenStack Keystone
A flaw was found in OpenStack Keystone. This vulnerability allows remote authenticated users to bypass intended authorization restrictions. This occurs because OpenStack Keystone does not properly handle EC2 (Elastic Compute Cloud) tokens when a user's role has been removed from a tenant. An attacker can leverage a token associated with a removed user role to gain unauthorized access.
A flaw was found in OpenStack Keystone. This vulnerability allows remote authenticated users to bypass intended authorization restrictions. This occurs because OpenStack Keystone does not properly handle EC2 (Elastic Compute Cloud) tokens when a user's role has been removed from a tenant. An attacker can leverage a token associated with a removed user role to gain unauthorized access.
Package: redhat-user-w
Ubuntu
OpenStack Keystone vulnerabilities
vendor_ubuntu·2012-11-28·CVSS 4.9
CVE-2012-5563 [MEDIUM] OpenStack Keystone vulnerabilities
Title: OpenStack Keystone vulnerabilities
Summary: Keystone would allow unintended access to files over the network.
Vijaya Erukala discovered that Keystone did not properly invalidate
EC2-style credentials such that if credentials were removed from a tenant,
an authenticated and authorized user using those credentials may still be
allowed access beyond the account owner's expectations. (CVE-2012-5571)
It was discovered that Keystone did not properly implement token
expiration. A remote attacker could use this to continue to access an
account that is disabled or has a changed password. This issue was
previously fixed as CVE-2012-3426 but was reintroduced in Ubuntu 12.10.
(CVE-2012-5563)
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2012-5571: keystone - A flaw was found in OpenStack Keystone. This vulnerability allows remote authent...
vendor_debian·2012·CVSS 5.4
CVE-2012-5571 [MEDIUM] CVE-2012-5571: keystone - A flaw was found in OpenStack Keystone. This vulnerability allows remote authent...
A flaw was found in OpenStack Keystone. This vulnerability allows remote authenticated users to bypass intended authorization restrictions. This occurs because OpenStack Keystone does not properly handle EC2 (Elastic Compute Cloud) tokens when a user's role has been removed from a tenant. An attacker can leverage a token associated with a removed user role to gain unauthorized access.
Scope: local
bookworm: resolved (fixed in 2012.1.1-11)
bullseye: resolved (fixed in 2012.1.1-11)
forky: resolved (fixed in 2012.1.1-11)
sid: resolved (fixed in 2012.1.1-11)
trixie: resolved (fixed in 2012.1.1-11)
No detection rules found.
No public exploits indexed.
http://lists.fedoraproject.org/pipermail/package-announce/2012-December/094286.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1556.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1557.htmlhttp://secunia.com/advisories/51423http://secunia.com/advisories/51436http://www.openwall.com/lists/oss-security/2012/11/28/5http://www.openwall.com/lists/oss-security/2012/11/28/6http://www.securityfocus.com/bid/56726http://www.ubuntu.com/usn/USN-1641-1https://access.redhat.com/security/cve/CVE-2012-5571https://bugs.launchpad.net/keystone/+bug/1064914https://exchange.xforce.ibmcloud.com/vulnerabilities/80333https://github.com/openstack/keystone/commit/37308dd4f3e33f7bd0f71d83fd51734d1870713bhttps://github.com/openstack/keystone/commit/8735009dc5b895db265a1cd573f39f4acfca2a19https://github.com/openstack/keystone/commit/9d68b40cb9ea818c48152e6c712ff41586ad9653http://lists.fedoraproject.org/pipermail/package-announce/2012-December/094286.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1556.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1557.htmlhttp://secunia.com/advisories/51423http://secunia.com/advisories/51436http://www.openwall.com/lists/oss-security/2012/11/28/5http://www.openwall.com/lists/oss-security/2012/11/28/6http://www.securityfocus.com/bid/56726http://www.ubuntu.com/usn/USN-1641-1https://bugs.launchpad.net/keystone/+bug/1064914https://exchange.xforce.ibmcloud.com/vulnerabilities/80333https://github.com/openstack/keystone/commit/37308dd4f3e33f7bd0f71d83fd51734d1870713bhttps://github.com/openstack/keystone/commit/8735009dc5b895db265a1cd573f39f4acfca2a19https://github.com/openstack/keystone/commit/9d68b40cb9ea818c48152e6c712ff41586ad9653
2012-12-18
Published