Bugzilla will be upgraded to version 5.0 on a still to be determined date in the near future. The original upgrade date has been delayed.
Bug 1209994 - (CVE-2015-1856) CVE-2015-1856 OpenStack Swift: unauthorized deletion of versioned Swift object
CVE-2015-1856 OpenStack Swift: unauthorized deletion of versioned Swift object
Status: CLOSED ERRATA
Product: Security Response
Classification: Other
Component: vulnerability (Show other bugs)
unspecified
All Linux
medium Severity medium
: ---
: ---
Assigned To: Red Hat Product Security
impact=moderate,public=20150415,repor...
: Security
Depends On: 1246357 1246358 1246360 1248348 1248349
Blocks: 1209996
  Show dependency treegraph
 
Reported: 2015-04-08 11:41 EDT by Vasyl Kaigorodov
Modified: 2017-03-23 02:47 EDT (History)
23 users (show)

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
A flaw was found in OpenStack Object Storage that could allow an authenticated user to delete the most recent version of a versioned object regardless of ownership. To exploit this flaw, an attacker must know the name of the object and have listing access to the x-versions-location container.
Story Points: ---
Clone Of:
Environment:
Last Closed: 2017-03-23 02:47:10 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)
cve-2015-1856-master-kilo.patch (10.84 KB, text/plain)
2015-04-10 06:19 EDT, Vasyl Kaigorodov
no flags Details
cve-2015-1856-stable-icehouse.patch (8.73 KB, text/plain)
2015-04-10 06:19 EDT, Vasyl Kaigorodov
no flags Details
cve-2015-1856-stable-juno.patch (10.82 KB, text/plain)
2015-04-10 06:19 EDT, Vasyl Kaigorodov
no flags Details


External Trackers
Tracker ID Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2015:1681 normal SHIPPED_LIVE Moderate: openstack-swift security update 2015-08-24 22:38:12 EDT
Red Hat Product Errata RHSA-2015:1684 normal SHIPPED_LIVE Moderate: openstack-swift security update 2015-08-25 05:58:20 EDT

  None (edit)
Description Vasyl Kaigorodov 2015-04-08 11:41:52 EDT
Upstream reported the below vulnerability in OpenStack:
"""
Title: Unauthorized delete of versioned Swift object
Reporter: Clay Gerrard (SwiftStack)
Products: Swift
Affects: up to version 2.2.2

Description:
Clay Gerrard from SwiftStack reported a vulnerability in Swift object
versioning. An authenticated user can delete the most recent version of
any versioned object who's name is known if the user have listing access
to the x-versions-location container. Only Swift setups with
allow_version setting are affected.
"""

Acknowledgements:

Red Hat would like to thank the OpenStack project for reporting this issue. Upstream acknowledges Clay Gerrard of SwiftStack as the original reporter.
Comment 1 Vasyl Kaigorodov 2015-04-10 06:19:04 EDT
Created attachment 1013074 [details]
cve-2015-1856-master-kilo.patch
Comment 2 Vasyl Kaigorodov 2015-04-10 06:19:08 EDT
Created attachment 1013075 [details]
cve-2015-1856-stable-icehouse.patch
Comment 3 Vasyl Kaigorodov 2015-04-10 06:19:12 EDT
Created attachment 1013076 [details]
cve-2015-1856-stable-juno.patch
Comment 5 Garth Mollett 2015-07-24 01:50:17 EDT
Created openstack-swift tracking bugs for this issue:

Affects: fedora-all [bug 1246358]
Affects: openstack-rdo [bug 1246360]
Comment 7 errata-xmlrpc 2015-08-24 18:38:30 EDT
This issue has been addressed in the following products:

  OpenStack 6 for RHEL 7

Via RHSA-2015:1681 https://rhn.redhat.com/errata/RHSA-2015-1681.html
Comment 8 errata-xmlrpc 2015-08-25 01:58:34 EDT
This issue has been addressed in the following products:

  OpenStack 5 for RHEL 6
  OpenStack 5 for RHEL 7

Via RHSA-2015:1684 https://rhn.redhat.com/errata/RHSA-2015-1684.html
Comment 9 Siddharth Sharma 2017-03-23 02:46:36 EDT
This issue has been addressed in the following products:

  Red Hat Gluster Storage 3.1 for RHEL 6
  Native Client for RHEL 6 for Red Hat Storage

Via RHSA-2015:1845 https://rhn.redhat.com/errata/RHSA-2015-1845.html
Comment 10 Siddharth Sharma 2017-03-23 02:47:10 EDT
This issue has been addressed in the following products:

  Red Hat Gluster Storage 3.1 for RHEL 7
  Native Client for RHEL 7 for Red Hat Storage

Via RHSA-2015:1846 https://rhn.redhat.com/errata/RHSA-2015-1846.html

Note You need to log in before you can comment on or make changes to this bug.