CVE Vulnerabilities

CVE-2014-4167

Published: Jul 11, 2014 | Modified: Oct 22, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.5 LOW
AV:N/AC:M/Au:S/C:N/I:N/A:P
RedHat/V2
4 MODERATE
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM

The L3-agent in OpenStack Neutron before 2013.2.4, 2014.x before 2014.1.2, and Juno before Juno-2 allows remote authenticated users to cause a denial of service (IPv4 address attachment outage) by attaching an IPv6 private subnet to a L3 router.

Affected Software

Name Vendor Start Version End Version
Neutron Openstack 2011.1 (including) 2013.2.3 (including)
Neutron Ubuntu saucy *
Neutron Ubuntu trusty *
Neutron Ubuntu upstream *
OpenStack 4 for RHEL 6 RedHat openstack-neutron-0:2013.2.3-14.el6ost *

References