Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The XML libraries for Python 3.4, 3.3, 3.2, 3.1, 2.7, and 2.6, as used in OpenStack Keystone Essex, Folsom, and Grizzly; Compute (Nova) Essex and Folsom; Cinder Folsom; Django; and possibly other products allow remote attackers to cause a denial of service (resource consumption and crash) via an XML Entity Expansion (XEE) attack.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
OpenStack多款产品拒绝服务漏洞
Vulnerability Description
OpenStack是由Rackspace和NASA共同开发的云计算平台,帮助服务商和企业内部实现类似于Amazon EC2和S3的云基础架构。 多款OpenStack产品中存在拒绝服务漏洞,该漏洞源于在扩展XML实体时存在错误。攻击者利用该漏洞通过特制的XML文档,消耗系统大量内存,并使系统崩溃或挂起。
CVSS Information
N/A
Vulnerability Type
N/A