CVE-2016-0738: Openstack Swift

High severity, CVSS 7.5. EPSS: 3.9% chance of exploitation in the next 30 days.

OpenStack Object Storage (Swift) before 2.3.1 (Kilo), 2.4.x, and 2.5.x before 2.5.1 (Liberty) do not properly close server connections, which allows remote attackers to cause a denial of service (proxy-server resource consumption) via a series of interrupted requests to a Large Object URL.

Affected products

  • Openstack Swift: up to and including 2.3.0; version 2.4.0 only; version 2.5.0 only

Published 2016-01-29. Last modified 2026-06-17.