---
title: "CVE-2012-5563\n    | Ubuntu"
description: Ubuntu is an open source software operating system that runs from the
  desktop, to the cloud, to all your internet connected things.
url: https://ubuntu.com/security/CVE-2012-5563?format=md
keywords: index, follow
---

# CVE-2012-5563

Publication date 28 November 2012

Last updated 4 August 2025

---

Ubuntu priority

**Low**

[Why this priority?](https://ubuntu.com/security/cves/about#priority )

Toggle side navigation

## Description

OpenStack Keystone, as used in OpenStack Folsom 2012.2, does not properly
implement token expiration, which allows remote authenticated users to
bypass intended authorization restrictions by creating new tokens through
token chaining. NOTE: this issue exists because of a CVE-2012-3426
regression.

[Read the notes from the security team](https://ubuntu.com/security/CVE-2012-5563?format=md#notes)

## Status

Show unmaintained releases

| Package | Ubuntu Release | Status |
| --- | --- | --- |
| keystone | 12.10 quantal | Fixed 2012.2-0ubuntu1.2 |
| 12.04 LTS precise | Not affected |
| 11.10 oneiric | Not affected |
| 10.04 LTS lucid | Not in release |
| 8.04 LTS hardy | Not in release |

---

* [How can I get the fixes?](https://ubuntu.com/security/cves/about#security)
* [What do statuses mean?](https://ubuntu.com/security/cves/about#statuses)

## Notes

---

### [jdstrand](https://launchpad.net/~jdstrand)

Folsom+ only
2013.1~g2-0ubuntu1 is affected. Server team will provide this as
part of their regular updates for Ubuntu 13.04 (deferring for now)

## References

* [MITRE](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5563)
* [NVD](https://nvd.nist.gov/vuln/detail/CVE-2012-5563)
* [Launchpad](https://launchpad.net/bugs/cve/CVE-2012-5563)
* [Debian](https://security-tracker.debian.org/tracker/CVE-2012-5563)

### Related Ubuntu Security Notices (USN)

+ [USN-1641-1](https://usn.ubuntu.com/USN-1641-1)
+ OpenStack Keystone vulnerabilities
+ 28 November 2012

### Other references

* <https://www.cve.org/CVERecord?id=CVE-2012-5563>
