{"id":"UBUNTU-CVE-2026-49017","details":"In OpenStack Swift before 2.36.2 and 2.37.2, s3api middleware enters an infinite loop when processing a truncated aws-chunked PUT request body. The StreamingInput class repeatedly appends an empty buffer and re-reads, causing the proxy-server worker handling the request to become permanently unresponsive with increasing CPU and memory consumption. An authenticated attacker can systematically exhaust all proxy-server workers, resulting in denial of service. The defect was introduced in Swift 2.36.0.","modified":"2026-06-09T21:17:22.938999500Z","published":"2026-05-27T02:16:00Z","upstream":["CVE-2026-49017"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-49017"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2026-49017"},{"type":"REPORT","url":"https://bugs.launchpad.net/bugs/2152205"},{"type":"REPORT","url":"https://review.opendev.org/c/openstack/swift/+/987957"},{"type":"REPORT","url":"https://review.opendev.org/c/openstack/swift/+/988093"}],"affected":[{"package":{"name":"swift","ecosystem":"Ubuntu:25.10","purl":"pkg:deb/ubuntu/swift?arch=source&distro=questing"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["2.35.0-0ubuntu1","2.35.0+git2025070714.1428eb3b5-0ubuntu1","2.36.0-0ubuntu1","2.36.0-0ubuntu1.1"],"ecosystem_specific":{"binaries":[{"binary_name":"python3-swift","binary_version":"2.36.0-0ubuntu1.1"},{"binary_version":"2.36.0-0ubuntu1.1","binary_name":"swift"},{"binary_name":"swift-account","binary_version":"2.36.0-0ubuntu1.1"},{"binary_version":"2.36.0-0ubuntu1.1","binary_name":"swift-container"},{"binary_name":"swift-object","binary_version":"2.36.0-0ubuntu1.1"},{"binary_name":"swift-object-expirer","binary_version":"2.36.0-0ubuntu1.1"},{"binary_name":"swift-proxy","binary_version":"2.36.0-0ubuntu1.1"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-49017.json"}},{"package":{"name":"swift","ecosystem":"Ubuntu:26.04:LTS","purl":"pkg:deb/ubuntu/swift?arch=source&distro=resolute"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["2.36.0-0ubuntu1","2.37.0-0ubuntu1","2.37.1-0ubuntu2"],"ecosystem_specific":{"binaries":[{"binary_version":"2.37.1-0ubuntu2","binary_name":"python3-swift"},{"binary_name":"swift","binary_version":"2.37.1-0ubuntu2"},{"binary_version":"2.37.1-0ubuntu2","binary_name":"swift-account"},{"binary_name":"swift-container","binary_version":"2.37.1-0ubuntu2"},{"binary_version":"2.37.1-0ubuntu2","binary_name":"swift-object"},{"binary_name":"swift-object-expirer","binary_version":"2.37.1-0ubuntu2"},{"binary_name":"swift-proxy","binary_version":"2.37.1-0ubuntu2"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-49017.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:L"},{"type":"Ubuntu","score":"medium"}]}