Описание
PackStack in Red Hat OpenStack 4.0 does not enforce the default security groups when deployed to Neutron, which allows remote attackers to bypass intended access restrictions and make unauthorized connections.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 1:2014.1~b3-0ubuntu1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [1:2014.1~b3-0ubuntu1]] |
| lucid | DNE | |
| precise | DNE | |
| quantal | DNE | |
| saucy | not-affected | 1:2013.2-0ubuntu1.1 |
| trusty | not-affected | 1:2014.1~b3-0ubuntu1 |
| trusty/esm | DNE | trusty was not-affected [1:2014.1~b3-0ubuntu1] |
| upstream | needs-triage |
Показывать по
Ссылки на источники
EPSS
6.4 Medium
CVSS2
Связанные уязвимости
PackStack in Red Hat OpenStack 4.0 does not enforce the default security groups when deployed to Neutron, which allows remote attackers to bypass intended access restrictions and make unauthorized connections.
PackStack in Red Hat OpenStack 4.0 does not enforce the default security groups when deployed to Neutron, which allows remote attackers to bypass intended access restrictions and make unauthorized connections.
PackStack in Red Hat OpenStack 4.0 does not enforce the default securi ...
PackStack in Red Hat OpenStack 4.0 does not enforce the default security groups when deployed to Neutron, which allows remote attackers to bypass intended access restrictions and make unauthorized connections.
EPSS
6.4 Medium
CVSS2