cbcvebase.
CVE-2014-7821
published 2014-11-24

CVE-2014-7821: OpenStack Neutron before 2014.1.4 and 2014.2.x before 2014.2.1 allows remote authenticated users to cause a denial of service (crash) via a crafted…

PriorityP417medium4CVSS 2.0
AVNACLAuSCNINAP
EPSS
3.94%
89.2th percentile
OpenStack Neutron before 2014.1.4 and 2014.2.x before 2014.2.1 allows remote authenticated users to cause a denial of service (crash) via a crafted dns_nameservers value in the DNS configuration.

Affected

9 ranges
VendorProductVersion rangeFixed in
debianneutron< neutron 2014.1.3-6 (bookworm)neutron 2014.1.3-6 (bookworm)
fedoraprojectfedora
openstackneutron>= 0 < 2014.1.3-62014.1.3-6
openstackneutron>= 0 < 2014.1.3-62014.1.3-6
openstackneutron>= 0 < 2014.1.3-62014.1.3-6
openstackneutron>= 0 < 2014.1.3-62014.1.3-6
openstackneutron>= 2012.2.1 < 2014.1.42014.1.4
openstackneutron>= 2014.2 < 2014.2.12014.2.1
redhatopenstack

CVSS provenance

nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
osv4.0MEDIUM
vendor_debian4.0MEDIUM
vendor_redhat4.0MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.