{"api_version":"1","generated_at":"2026-07-23T09:08:00+00:00","cve":"CVE-2012-3426","urls":{"html":"https://cve.report/CVE-2012-3426","api":"https://cve.report/api/cve/CVE-2012-3426.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2012-3426","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2012-3426"},"summary":{"title":"CVE-2012-3426","description":"OpenStack Keystone before 2012.1.1, as used in OpenStack Folsom before Folsom-1 and OpenStack Essex, does not properly implement token expiration, which allows remote authenticated users to bypass intended authorization restrictions by (1) creating new tokens through token chaining, (2) leveraging possession of a token for a disabled user account, or (3) leveraging possession of a token for an account with a changed password.","state":"PUBLISHED","assigner":"redhat","published_at":"2012-07-31 10:45:42","updated_at":"2026-04-29 01:13:23"},"problem_types":["CWE-264","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.9","severity":"","vector":"AV:N/AC:M/Au:S/C:P/I:P/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:S/C:P/I:P/A:N","baseScore":4.9,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"SINGLE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"}}],"references":[{"url":"https://launchpad.net/keystone/essex/2012.1.1/+download/keystone-2012.1.1.tar.gz","name":"https://launchpad.net/keystone/essex/2012.1.1/+download/keystone-2012.1.1.tar.gz","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"","mime":"application/gzip","httpstatus":"200","archivestatus":"200"},{"url":"http://github.com/openstack/keystone/commit/d9600434da14976463a0bd03abd8e0309f0db454","name":"http://github.com/openstack/keystone/commit/d9600434da14976463a0bd03abd8e0309f0db454","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Invalidate user tokens when a user is disabled · openstack/keystone@d960043 · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://github.com/openstack/keystone/commit/a67b24878a6156eab17b9098fa649f0279256f5d","name":"http://github.com/openstack/keystone/commit/a67b24878a6156eab17b9098fa649f0279256f5d","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Invalidate user tokens when password is changed · openstack/keystone@a67b248 · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugs.launchpad.net/keystone/+bug/997194","name":"https://bugs.launchpad.net/keystone/+bug/997194","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Bug #997194 “[OSSA 2012-010] Tokens remain valid after a user ac...” : Bugs : Keystone","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugs.launchpad.net/keystone/+bug/998185","name":"https://bugs.launchpad.net/keystone/+bug/998185","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Bug #998185 “[OSSA 2012-010] Once a token is created/distributed...” : Bugs : OpenStack Identity (keystone)","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.openwall.com/lists/oss-security/2012/07/27/4","name":"http://www.openwall.com/lists/oss-security/2012/07/27/4","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"oss-security - [OSSA 2012-010] Various Keystone token expiration issues (CVE-2012-3426)","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://github.com/openstack/keystone/commit/375838cfceb88cacc312ff6564e64eb18ee6a355","name":"http://github.com/openstack/keystone/commit/375838cfceb88cacc312ff6564e64eb18ee6a355","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"Carrying over token expiry time when token chaining · openstack/keystone@375838c · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://github.com/openstack/keystone/commit/29e74e73a6e51cffc0371b32354558391826a4aa","name":"http://github.com/openstack/keystone/commit/29e74e73a6e51cffc0371b32354558391826a4aa","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Carrying over token expiry time when token chaining · openstack/keystone@29e74e7 · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugs.launchpad.net/keystone/+bug/996595","name":"https://bugs.launchpad.net/keystone/+bug/996595","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Bug #996595 “[OSSA 2012-010] Following a password compromise and...” : Bugs : Keystone","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://github.com/openstack/keystone/commit/ea03d05ed5de0c015042876100d37a6a14bf56de","name":"http://github.com/openstack/keystone/commit/ea03d05ed5de0c015042876100d37a6a14bf56de","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"],"title":"Invalidate user tokens when password is changed · openstack/keystone@ea03d05 · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/50045","name":"http://secunia.com/advisories/50045","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Security Advisory SA50045 - OpenStack Keystone Token Expiration Security Bypass Vulnerabilities - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.ubuntu.com/usn/USN-1552-1","name":"http://www.ubuntu.com/usn/USN-1552-1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"USN-1552-1: OpenStack Keystone vulnerabilities | Ubuntu","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://github.com/openstack/keystone/commit/628149b3dc6b58b91fd08e6ca8d91c728ccb8626","name":"http://github.com/openstack/keystone/commit/628149b3dc6b58b91fd08e6ca8d91c728ccb8626","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch"],"title":"Invalidate user tokens when a user is disabled · openstack/keystone@628149b · GitHub","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/50494","name":"http://secunia.com/advisories/50494","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Security Advisory SA50494 - Ubuntu update for keystone - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2012-3426","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2012-3426","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2012","cve_id":"3426","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"openstack","cpe5":"essex","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2012","cve_id":"3426","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"openstack","cpe5":"horizon","cpe6":"folsom-1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2012","cve_id":"3426","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"openstack","cpe5":"keystone","cpe6":"2012.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2012","cve_id":"3426","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"openstack","cpe5":"keystone","cpe6":"2012.1.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[{"cve":"CVE-2012-3426","qid":"996738","title":"Python (Pip) Security Update for Keystone (GHSA-xp97-6w7r-4cjc)"}]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T20:05:12.524Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://github.com/openstack/keystone/commit/d9600434da14976463a0bd03abd8e0309f0db454"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://github.com/openstack/keystone/commit/29e74e73a6e51cffc0371b32354558391826a4aa"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugs.launchpad.net/keystone/+bug/998185"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugs.launchpad.net/keystone/+bug/997194"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://launchpad.net/keystone/essex/2012.1.1/+download/keystone-2012.1.1.tar.gz"},{"name":"50494","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/50494"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://github.com/openstack/keystone/commit/ea03d05ed5de0c015042876100d37a6a14bf56de"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugs.launchpad.net/keystone/+bug/996595"},{"name":"[oss-security] 20120727 [OSSA 2012-010] Various Keystone token expiration issues (CVE-2012-3426)","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://www.openwall.com/lists/oss-security/2012/07/27/4"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://github.com/openstack/keystone/commit/628149b3dc6b58b91fd08e6ca8d91c728ccb8626"},{"name":"USN-1552-1","tags":["vendor-advisory","x_refsource_UBUNTU","x_transferred"],"url":"http://www.ubuntu.com/usn/USN-1552-1"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://github.com/openstack/keystone/commit/375838cfceb88cacc312ff6564e64eb18ee6a355"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://github.com/openstack/keystone/commit/a67b24878a6156eab17b9098fa649f0279256f5d"},{"name":"50045","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/50045"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2012-07-27T00:00:00.000Z","descriptions":[{"lang":"en","value":"OpenStack Keystone before 2012.1.1, as used in OpenStack Folsom before Folsom-1 and OpenStack Essex, does not properly implement token expiration, which allows remote authenticated users to bypass intended authorization restrictions by (1) creating new tokens through token chaining, (2) leveraging possession of a token for a disabled user account, or (3) leveraging possession of a token for an account with a changed password."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2012-09-07T09:00:00.000Z","orgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","shortName":"redhat"},"references":[{"tags":["x_refsource_CONFIRM"],"url":"http://github.com/openstack/keystone/commit/d9600434da14976463a0bd03abd8e0309f0db454"},{"tags":["x_refsource_CONFIRM"],"url":"http://github.com/openstack/keystone/commit/29e74e73a6e51cffc0371b32354558391826a4aa"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugs.launchpad.net/keystone/+bug/998185"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugs.launchpad.net/keystone/+bug/997194"},{"tags":["x_refsource_CONFIRM"],"url":"https://launchpad.net/keystone/essex/2012.1.1/+download/keystone-2012.1.1.tar.gz"},{"name":"50494","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/50494"},{"tags":["x_refsource_CONFIRM"],"url":"http://github.com/openstack/keystone/commit/ea03d05ed5de0c015042876100d37a6a14bf56de"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugs.launchpad.net/keystone/+bug/996595"},{"name":"[oss-security] 20120727 [OSSA 2012-010] Various Keystone token expiration issues (CVE-2012-3426)","tags":["mailing-list","x_refsource_MLIST"],"url":"http://www.openwall.com/lists/oss-security/2012/07/27/4"},{"tags":["x_refsource_CONFIRM"],"url":"http://github.com/openstack/keystone/commit/628149b3dc6b58b91fd08e6ca8d91c728ccb8626"},{"name":"USN-1552-1","tags":["vendor-advisory","x_refsource_UBUNTU"],"url":"http://www.ubuntu.com/usn/USN-1552-1"},{"tags":["x_refsource_CONFIRM"],"url":"http://github.com/openstack/keystone/commit/375838cfceb88cacc312ff6564e64eb18ee6a355"},{"tags":["x_refsource_CONFIRM"],"url":"http://github.com/openstack/keystone/commit/a67b24878a6156eab17b9098fa649f0279256f5d"},{"name":"50045","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/50045"}]}},"cveMetadata":{"assignerOrgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","assignerShortName":"redhat","cveId":"CVE-2012-3426","datePublished":"2012-07-31T10:00:00.000Z","dateReserved":"2012-06-14T00:00:00.000Z","dateUpdated":"2024-08-06T20:05:12.524Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2012-07-31 10:45:42","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["CWE-264","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:S/C:P/I:P/A:N","baseScore":4.9,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"SINGLE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":6.8,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:openstack:essex:*:*:*:*:*:*:*:*","matchCriteriaId":"F50B9DA6-B071-4B48-A486-54CB3E64AE58"},{"vulnerable":true,"criteria":"cpe:2.3:a:openstack:horizon:folsom-1:*:*:*:*:*:*:*","matchCriteriaId":"1E72EACB-1FA6-4F1D-A3C8-D255C705AAAD"},{"vulnerable":true,"criteria":"cpe:2.3:a:openstack:keystone:2012.1:*:*:*:*:*:*:*","matchCriteriaId":"8DACEFF0-BA6A-4184-A1AB-397438034AF0"},{"vulnerable":true,"criteria":"cpe:2.3:a:openstack:keystone:2012.1.1:*:*:*:*:*:*:*","matchCriteriaId":"C5BD2FC1-7C36-4532-813A-DED5F0BD1FFF"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2012","CveId":"3426","Ordinal":"1","Title":"CVE-2012-3426","CVE":"CVE-2012-3426","Year":"2012"},"notes":[{"CveYear":"2012","CveId":"3426","Ordinal":"1","NoteData":"OpenStack Keystone before 2012.1.1, as used in OpenStack Folsom before Folsom-1 and OpenStack Essex, does not properly implement token expiration, which allows remote authenticated users to bypass intended authorization restrictions by (1) creating new tokens through token chaining, (2) leveraging possession of a token for a disabled user account, or (3) leveraging possession of a token for an account with a changed password.","Type":"Description","Title":"CVE-2012-3426"},{"CveYear":"2012","CveId":"3426","Ordinal":"2","NoteData":"2012-07-31","Type":"Other","Title":"Published"},{"CveYear":"2012","CveId":"3426","Ordinal":"3","NoteData":"2012-09-07","Type":"Other","Title":"Modified"}]}}}