cbcvebase.

Debian Neutron vulnerabilities

25 known vulnerabilities affecting debian/neutron.

Total CVEs
25
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH4MEDIUM12LOW6

Vulnerabilities

Page 1 of 2
CVE-2021-38598P3CRITICALCVSS 9.1fixed in neutron 2:18.1.0-2 (bookworm)2021
CVE-2021-38598 [CRITICAL] CVE-2021-38598: neutron - OpenStack Neutron before 16.4.1, 17.x before 17.1.3, and 18.0.0 allows hardware ... OpenStack Neutron before 16.4.1, 17.x before 17.1.3, and 18.0.0 allows hardware address impersonation when the linuxbridge driver with ebtables-nft is used on a Netfilter-based platform. By sending carefully crafted packets, anyone in control of a server instance connected to the virtual switch can impersonate the hardware addresses of other systems on the netwo
debian
CVE-2015-8914P3CRITICALCVSS 9.1fixed in neutron 2:8.1.2-1 (bookworm)2015
CVE-2015-8914 [CRITICAL] CVE-2015-8914: neutron - The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 ... The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended ICMPv6-spoofing protection mechanism and consequently cause a denial of service or intercept network traffic via a link-local source address. Scope: local bookworm: resolved (fixed in 2:8.1.2-1) bullseye: resolved (fixed in 2:8.1.2-1) forky
debian
CVE-2015-3221P4MEDIUMCVSS 4.0PoCfixed in neutron 2015.1.0+2015.06.24.git61.bdf194a0e1-1 (bookworm)2015
CVE-2015-3221 [MEDIUM] CVE-2015-3221: neutron - OpenStack Neutron before 2014.2.4 (juno) and 2015.1.x before 2015.1.1 (kilo), wh... OpenStack Neutron before 2014.2.4 (juno) and 2015.1.x before 2015.1.1 (kilo), when using the IPTables firewall driver, allows remote authenticated users to cause a denial of service (L2 agent crash) by adding an address pair that is rejected by the ipset tool. Scope: local bookworm: resolved (fixed in 2015.1.0+2015.06.24.git61.bdf194a0e1-1) bullseye: resolved (fixed
debian
CVE-2024-53916P3LOWCVSS 7.5fixed in neutron 2:25.0.0-2 (forky)2024
CVE-2024-53916 [HIGH] CVE-2024-53916: neutron - In OpenStack Neutron before 25.0.1, neutron/extensions/tagging.py can use an inc... In OpenStack Neutron before 25.0.1, neutron/extensions/tagging.py can use an incorrect ID during policy enforcement. It does not apply the proper policy check for changing network tags. An unprivileged tenant is able to change (add and clear) tags on network objects that do not belong to the tenant, and this action is not subjected to the proper policy authorization
debian
CVE-2014-0187P3CRITICALCVSS 9.0fixed in neutron 2014.1.2-1 (bookworm)2014
CVE-2014-0187 [CRITICAL] CVE-2014-0187: neutron - The openvswitch-agent process in OpenStack Neutron 2013.1 before 2013.2.4 and 20... The openvswitch-agent process in OpenStack Neutron 2013.1 before 2013.2.4 and 2014.1 before 2014.1.1 allows remote authenticated users to bypass security group restrictions via an invalid CIDR in a security group rule, which prevents further rules from being applied. Scope: local bookworm: resolved (fixed in 2014.1.2-1) bullseye: resolved (fixed in 2014.1.2-1) for
debian
CVE-2016-5363P3HIGHCVSS 8.2fixed in neutron 2:8.1.2-1 (bookworm)2016
CVE-2016-5363 [HIGH] CVE-2016-5363: neutron - The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 ... The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended MAC-spoofing protection mechanism and consequently cause a denial of service or intercept network traffic via (1) a crafted DHCP discovery message or (2) crafted non-IP traffic. Scope: local bookworm: resolved (fixed in 2:8.1.2-1) bullseye: res
debian
CVE-2016-5362P3HIGHCVSS 8.2fixed in neutron 2:8.1.2-1 (bookworm)2016
CVE-2016-5362 [HIGH] CVE-2016-5362: neutron - The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 ... The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended DHCP-spoofing protection mechanism and consequently cause a denial of service or intercept network traffic via a crafted DHCP discovery message. Scope: local bookworm: resolved (fixed in 2:8.1.2-1) bullseye: resolved (fixed in 2:8.1.2-1) forky:
debian
CVE-2013-6433P3HIGHCVSS 7.6fixed in neutron 2014.1-1 (bookworm)2013
CVE-2013-6433 [HIGH] CVE-2013-6433: neutron - The default configuration in the Red Hat openstack-neutron package before 2013.2... The default configuration in the Red Hat openstack-neutron package before 2013.2.3-7 does not properly set a configuration file for rootwrap, which allows remote attackers to gain privileges via a crafted configuration file. Scope: local bookworm: resolved (fixed in 2014.1-1) bullseye: resolved (fixed in 2014.1-1) forky: resolved (fixed in 2014.1-1) sid: resolved (fix
debian
CVE-2021-20267P3HIGHCVSS 7.1fixed in neutron 2:17.1.1-5 (bookworm)2021
CVE-2021-20267 [HIGH] CVE-2021-20267: neutron - A flaw was found in openstack-neutron's default Open vSwitch firewall rules. By ... A flaw was found in openstack-neutron's default Open vSwitch firewall rules. By sending carefully crafted packets, anyone in control of a server instance connected to the virtual switch can impersonate the IPv6 addresses of other systems on the network, resulting in denial of service or in some cases possibly interception of traffic intended for other destinations.
debian
CVE-2019-9735P3MEDIUMCVSS 6.5fixed in neutron 2:13.0.2-13 (bookworm)2019
CVE-2019-9735 [MEDIUM] CVE-2019-9735: neutron - An issue was discovered in the iptables firewall module in OpenStack Neutron bef... An issue was discovered in the iptables firewall module in OpenStack Neutron before 10.0.8, 11.x before 11.0.7, 12.x before 12.0.6, and 13.x before 13.0.3. By setting a destination port in a security group rule along with a protocol that doesn't support that option (for example, VRRP), an authenticated user may block further application of security group rules for i
debian
CVE-2021-40085P3MEDIUMCVSS 6.5fixed in neutron 2:18.1.0-3 (bookworm)2021
CVE-2021-40085 [MEDIUM] CVE-2021-40085: neutron - An issue was discovered in OpenStack Neutron before 16.4.1, 17.x before 17.2.1, ... An issue was discovered in OpenStack Neutron before 16.4.1, 17.x before 17.2.1, and 18.x before 18.1.1. Authenticated attackers can reconfigure dnsmasq via a crafted extra_dhcp_opts value. Scope: local bookworm: resolved (fixed in 2:18.1.0-3) bullseye: resolved (fixed in 2:17.2.1-0+deb11u1) forky: resolved (fixed in 2:18.1.0-3) sid: resolved (fixed in 2:18.1.0-3)
debian
CVE-2019-10876P3MEDIUMCVSS 6.5fixed in neutron 2:13.0.2-15 (bookworm)2019
CVE-2019-10876 [MEDIUM] CVE-2019-10876: neutron - An issue was discovered in OpenStack Neutron 11.x before 11.0.7, 12.x before 12.... An issue was discovered in OpenStack Neutron 11.x before 11.0.7, 12.x before 12.0.6, and 13.x before 13.0.3. By creating two security groups with separate/overlapping port ranges, an authenticated user may prevent Neutron from being able to configure networks on any compute nodes where those security groups are present, because of an Open vSwitch (OVS) firewall Ke
debian
CVE-2014-0071P3MEDIUMCVSS 6.4fixed in neutron 2014.1-1 (bookworm)2014
CVE-2014-0071 [MEDIUM] CVE-2014-0071: neutron - PackStack in Red Hat OpenStack 4.0 does not enforce the default security groups ... PackStack in Red Hat OpenStack 4.0 does not enforce the default security groups when deployed to Neutron, which allows remote attackers to bypass intended access restrictions and make unauthorized connections. Scope: local bookworm: resolved (fixed in 2014.1-1) bullseye: resolved (fixed in 2014.1-1) forky: resolved (fixed in 2014.1-1) sid: resolved (fixed in 2014.1-
debian
CVE-2018-14635P4MEDIUMCVSS 6.5fixed in neutron 2:13.0.0-1 (bookworm)2018
CVE-2018-14635 [MEDIUM] CVE-2018-14635: neutron - When using the Linux bridge ml2 driver, non-privileged tenants are able to creat... When using the Linux bridge ml2 driver, non-privileged tenants are able to create and attach ports without specifying an IP address, bypassing IP address validation. A potential denial of service could occur if an IP address, conflicting with existing guests or routers, is then assigned from outside of the allowed allocation pool. Versions of openstack-neutron bef
debian
CVE-2021-40797P4LOWCVSS 6.5fixed in neutron 2:19.0.0-1 (bookworm)2021
CVE-2021-40797 [MEDIUM] CVE-2021-40797: neutron - An issue was discovered in the routes middleware in OpenStack Neutron before 16.... An issue was discovered in the routes middleware in OpenStack Neutron before 16.4.1, 17.x before 17.2.1, and 18.x before 18.1.1. By making API requests involving nonexistent controllers, an authenticated user may cause the API worker to consume increasing amounts of memory, resulting in API performance degradation or denial of service. Scope: local bookworm: resol
debian
CVE-2022-3277P4MEDIUMCVSS 6.5fixed in neutron 2:21.0.0~rc1-3 (bookworm)2022
CVE-2022-3277 [MEDIUM] CVE-2022-3277: neutron - An uncontrolled resource consumption flaw was found in openstack-neutron. This f... An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security groups for an invalid project. This issue creates resources that are unconstrained by the user's quota. If a malicious user were to submit a significant number of requests, this could lead to a denial of service. Scope: l
debian
CVE-2018-14636P4LOWCVSS 5.3fixed in neutron 2:13.0.0-1 (bookworm)2018
CVE-2018-14636 [MEDIUM] CVE-2018-14636: neutron - Live-migrated instances are briefly able to inspect traffic for other instances ... Live-migrated instances are briefly able to inspect traffic for other instances on the same hypervisor. This brief window could be extended indefinitely if the instance's port is set administratively down prior to live-migration and kept down after the migration is complete. This is possible due to the Open vSwitch integration bridge being connected to the instanc
debian
CVE-2014-4615P4MEDIUMCVSS 5.0fixed in ceilometer 2014.1.2-1 (bookworm)2014
CVE-2014-4615 [MEDIUM] CVE-2014-4615: ceilometer - The notifier middleware in OpenStack PyCADF 0.5.0 and earlier, Telemetry (Ceilom... The notifier middleware in OpenStack PyCADF 0.5.0 and earlier, Telemetry (Ceilometer) 2013.2 before 2013.2.4 and 2014.x before 2014.1.2, Neutron 2014.x before 2014.1.2 and Juno before Juno-2, and Oslo allows remote authenticated users to obtain X_AUTH_TOKEN values by reading the message queue (v2/meters/http.request). Scope: local bookworm: resolved (fixed in 201
debian
CVE-2013-6419P4MEDIUMCVSS 5.0fixed in neutron 2013.2.1-1 (bookworm)2013
CVE-2013-6419 [MEDIUM] CVE-2013-6419: neutron - Interaction error in OpenStack Nova and Neutron before Havana 2013.2.1 and iceho... Interaction error in OpenStack Nova and Neutron before Havana 2013.2.1 and icehouse-1 does not validate the instance ID of the tenant making a request, which allows remote tenants to obtain sensitive metadata by spoofing the device ID that is bound to a port, which is not properly handled by (1) api/metadata/handler.py in Nova and (2) the neutron-metadata-agent (age
debian
CVE-2014-6414P4MEDIUMCVSS 4.0fixed in neutron 2014.1.3-1 (bookworm)2014
CVE-2014-6414 [MEDIUM] CVE-2014-6414: neutron - OpenStack Neutron before 2014.2.4 and 2014.1 before 2014.1.2 allows remote authe... OpenStack Neutron before 2014.2.4 and 2014.1 before 2014.1.2 allows remote authenticated users to set admin network attributes to default values via unspecified vectors. Scope: local bookworm: resolved (fixed in 2014.1.3-1) bullseye: resolved (fixed in 2014.1.3-1) forky: resolved (fixed in 2014.1.3-1) sid: resolved (fixed in 2014.1.3-1) trixie: resolved (fixed in 20
debian
Debian Neutron vulnerabilities | cvebase