PackStack in Red Hat OpenStack 4.0 does not enforce the default security groups when deployed to Neutron, which allows remote attackers to bypass intended access restrictions and make unauthorized connections.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Openstack | Redhat | 4.0 (including) | 4.0 (including) |
| OpenStack 4 for RHEL 6 | RedHat | openstack-packstack-0:2013.2.1-0.25.dev987.el6ost | * |