CVE Vulnerabilities

CVE-2014-3555

Published: Jul 23, 2014 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V2
3.5 MODERATE
AV:N/AC:M/Au:S/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM

OpenStack Neutron before 2013.2.4, 2014.x before 2014.1.2, and Juno before Juno-2 allows remote authenticated users to cause a denial of service (crash or long firewall rule updates) by creating a large number of allowed address pairs.

Affected Software

Name Vendor Start Version End Version
Neutron Openstack 2013.2.4 (including) 2013.2.4 (including)
Neutron Openstack 2014.1 (including) 2014.1 (including)
Neutron Openstack 2014.1.1 (including) 2014.1.1 (including)
Neutron Openstack juno-1 (including) juno-1 (including)
OpenStack 4 for RHEL 6 RedHat openstack-neutron-0:2013.2.3-16.el6ost *
Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 6 RedHat openstack-neutron-0:2014.1.2-2.el6ost *
Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 7 RedHat openstack-neutron-0:2014.1.2-2.el7ost *
Neutron Ubuntu trusty *
Neutron Ubuntu upstream *

References