CVE-2012-5571 | Openstack keystone: openstack keystone: authorization bypass via improper ec2 token handling

A flaw was found in OpenStack Keystone. This vulnerability allows remote authenticated users to bypass intended authorization restrictions. This occurs because OpenStack Keystone does not properly handle EC2 (Elastic Compute Cloud) tokens when a user's role has been removed from a tenant. An attacker can leverage a token associated with a removed user role to gain unauthorized access.

公开: 2012-12-17 最后更新: 2026-06-16 分配方: [email protected] 来源: [email protected]

结论预警: CVE-2012-5571 综合评估为中等风险(50.9/100):CVSS 技术影响为中级,利用概率(EPSS 2.04%) 核心证据: 近一日 EPSS 上升 +1.80%,被利用关注度持续升高。 强制指令: 梳理受影响资产并纳入修补计划。

风险随态势动态变化;本站持续评估并同步更新本页展示内容。

CVE-2012-5571 的 EPSS(利用预测评分)

EPSS 日更估计相对被利用可能性;百分位表示该 CVE 在已评分漏洞中的相对排名(越高表示相对更严重)。

# 日期 旧 EPSS 分数 新 EPSS 分数 变化(新 − 旧)
1 2026-06-15 0.24% 2.04% +1.80%
2 2025-12-04 0.32% 0.24% -0.09%
3 2025-04-03 0.32%

完整 EPSS 历史 (共 11 条)

CVE-2012-5571 的 CVSS 指标

该 CVE 的 CVSS 指标。

底座分 版本 严重度 向量 可利用性 影响 分数来源
5.4 3.1 MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N 点击展开
攻击向量 (AV:N)
经互联网或企业内可路由网段即可从远端触达,攻击者不必出现在设备旁。
攻击复杂度 (AC:L)
前置条件清晰,成功路径稳定,不依赖罕见竞态或苛刻环境。
权限要求 (PR:L)
一般用户权限即可,不必是管理员或 root。
用户交互 (UI:N)
无需受害者点击链接、放行宏或安装软件,攻击链可自动走完。
作用域 (S:U)
破坏局限在脆弱组件原本的安全权限与信任域之内。
机密性影响 (C:L)
可能外泄部分字段或样本数据,但难以形成“整库拖走”的局面。
完整性影响 (I:L)
能改局部记录或配置,但尚不致让整站/整库数据整体不可信。
可用性影响 (A:N)
不至于造成业务意义上的长时间停摆或灾难性性能崩塌。
2.8 2.5 [email protected]
3.5 2.0 LOW
AV:N/AC:M/Au:S/C:N/I:P/A:N 点击展开
访问路径 (AV:N)
只要路由可达,即可从远端发起利用。
访问复杂度 (AC:M)
需要若干有利条件,但不至于“千年一遇”。
认证 (AU:S)
突破一次认证边界即可。
机密性影响 (C:N)
对机密性无影响。
完整性影响 (I:P)
完整性受到部分损害。
可用性影响 (A:N)
对可用性无影响。
6.8 2.9 [email protected]

CVE-2012-5571 的弱点枚举

CVE-2012-5571 的 GitHub 安全公告

GHSA-qvpr-qm6w-6rcc · 严重度: medium · 生态: pip — OpenStack Keystone intended authorization restrictions bypass

CVE-2012-5571 的 OS 跟踪

vendor priority summary link
debian not yet assigned CVE-2012-5571 not yet assigned priority: Debian including 1 source packages (keystone), 5 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 5. https://security-tracker.debian.org/tracker/CVE-2012-5571
redhat medium https://access.redhat.com/security/cve/CVE-2012-5571
suse medium https://www.suse.com/security/cve/CVE-2012-5571/
ubuntu medium CVE-2012-5571 medium priority: Ubuntu including 1 source packages (keystone), 6 status rows across 6 suites (hardy, lucid, oneiric, precise, quantal, upstream): DNE 2, released 2, ignored 1, pending 1. https://ubuntu.com/security/CVE-2012-5571

CVE-2012-5571 的影响软件 / 配置

厂商 产品 版本 原始 CPE
openstack essex 2012.1 cpe:2.3:a:openstack:essex:2012.1:*:*:*:*:*:*:*
openstack folsom 2012.2 cpe:2.3:a:openstack:folsom:2012.2:*:*:*:*:*:*:*

CVE-2012-5571 的参考链接

URL 标签
http://lists.fedoraproject.org/pipermail/package-announce/2012-December/094286.html
http://rhn.redhat.com/errata/RHSA-2012-1556.html
http://rhn.redhat.com/errata/RHSA-2012-1557.html
http://secunia.com/advisories/51423 Vendor Advisory
http://secunia.com/advisories/51436 Vendor Advisory
http://www.openwall.com/lists/oss-security/2012/11/28/5 Patch
http://www.openwall.com/lists/oss-security/2012/11/28/6 Patch
http://www.securityfocus.com/bid/56726
http://www.ubuntu.com/usn/USN-1641-1
https://access.redhat.com/security/cve/CVE-2012-5571
https://bugs.launchpad.net/keystone/+bug/1064914 Patch
https://exchange.xforce.ibmcloud.com/vulnerabilities/80333
https://github.com/openstack/keystone/commit/37308dd4f3e33f7bd0f71d83fd51734d1870713b Patch
https://github.com/openstack/keystone/commit/8735009dc5b895db265a1cd573f39f4acfca2a19 Patch
https://github.com/openstack/keystone/commit/9d68b40cb9ea818c48152e6c712ff41586ad9653 Patch
cvelogic Threat Intelligence