[PKG-Openstack-devel] Bug#752087: swift:CVE-2014-3497: XSS in Swift requests through WWW-Authenticate header

Salvatore Bonaccorso carnil at debian.org
Thu Jun 19 14:16:40 UTC 2014


Source: swift
Version: 1.12.0-1
Severity: important
Tags: security upstream

Hi,

the following vulnerability was published for swift.

CVE-2014-3497[0]:
XSS in Swift requests through WWW-Authenticate header

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2014-3497
[1] http://www.openwall.com/lists/oss-security/2014/06/19/10

Regards,
Salvatore



More information about the Openstack-devel mailing list