Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-5363

Опубликовано: 17 июн. 2016
Источник: nvd
CVSS3: 8.2
CVSS2: 6.4
EPSS Низкий

Описание

The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended MAC-spoofing protection mechanism and consequently cause a denial of service or intercept network traffic via (1) a crafted DHCP discovery message or (2) crafted non-IP traffic.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:openstack:neutron:7.0.0:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:7.0.1:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:7.0.2:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:7.0.3:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:7.0.4:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:8.0.0:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:8.1.0:*:*:*:*:*:*:*

EPSS

Процентиль: 89%
0.04749
Низкий

8.2 High

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-254

Связанные уязвимости

CVSS3: 8.2
ubuntu
больше 9 лет назад

The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended MAC-spoofing protection mechanism and consequently cause a denial of service or intercept network traffic via (1) a crafted DHCP discovery message or (2) crafted non-IP traffic.

CVSS3: 6.3
redhat
почти 10 лет назад

The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended MAC-spoofing protection mechanism and consequently cause a denial of service or intercept network traffic via (1) a crafted DHCP discovery message or (2) crafted non-IP traffic.

CVSS3: 8.2
debian
больше 9 лет назад

The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 thro ...

CVSS3: 8.2
github
больше 3 лет назад

OpenStack Neutron Intended MAC-spoofing protection mechanism bypass

EPSS

Процентиль: 89%
0.04749
Низкий

8.2 High

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-254