CVE-2012-4406: Fedoraproject Fedora
Critical severity, CVSS 9.8. EPSS: 6.6% chance of exploitation in the next 30 days.
OpenStack Object Storage (swift) before 1.7.0 uses the loads function in the pickle Python module unsafely when storing and loading metadata in memcached, which allows remote attackers to execute arbitrary code via a crafted pickle object.
Affected products
- Fedoraproject Fedora: version 16 only
- Openstack Swift: before 1.7.0 (fixed in 1.7.0)
- Red Hat Enterprise Linux Server: version 5.0 only; version 6.0 only
- Red Hat Gluster Storage Management Console: version 2.0 only
- Red Hat Gluster Storage Server For On-Premise: version 2.0 only
- Red Hat Storage: version 2.0 only
- Red Hat Storage For Public Cloud: version 2.0 only
Published 2012-10-22. Last modified 2026-06-16.