{"id":"CVE-2016-0737","details":"OpenStack Object Storage (Swift) before 2.4.0 does not properly close client connections, which allows remote attackers to cause a denial of service (proxy-server resource consumption) via a series of interrupted requests to a Large Object URL.","aliases":["GHSA-972c-cfv8-2hq8"],"modified":"2026-04-10T03:46:50.954947Z","published":"2016-01-29T20:59:02.920Z","references":[{"type":"WEB","url":"http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html"},{"type":"WEB","url":"http://www.securityfocus.com/bid/81432"},{"type":"WEB","url":"https://review.openstack.org/#/c/217750/"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-0128.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-0155.html"},{"type":"ADVISORY","url":"https://launchpad.net/swift/+milestone/2.4.0"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-0329.html"},{"type":"ADVISORY","url":"https://bugs.launchpad.net/swift/+bug/1466549"},{"type":"FIX","url":"https://security.openstack.org/ossa/OSSA-2016-004.html"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/openstack/swift","events":[{"introduced":"0"},{"last_affected":"f8dee761bd36f857aa1288c27e095907032fad68"}],"database_specific":{"versions":[{"introduced":"0"},{"last_affected":"2.3.0"}]}}],"versions":["1.0.0","1.0.1","1.0.2","1.1.0","1.10.0","1.10.0.rc1","1.13.0","1.13.1.rc1","1.3.0","1.3gamma1","1.3rc1","1.4.0","1.4.1","1.4.2","1.4.5","1.4.6","1.8.0.rc1","1.9.2","2.0.0.rc1","2.1.0","2.1.0.rc1","2.2.0","2.2.0.rc1","2.2.1","2.2.1.rc1","2.2.1c1","2.2.2","2.2.2rc1","2.3.0","2.3.0rc1","2.3.0rc2"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-0737.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}