Your submission was sent successfully! Close

CVE-2014-3555

Published: 23 July 2014

OpenStack Neutron before 2013.2.4, 2014.x before 2014.1.2, and Juno before Juno-2 allows remote authenticated users to cause a denial of service (crash or long firewall rule updates) by creating a large number of allowed address pairs.

Priority

Medium

Status

Package Release Status
neutron
Launchpad, Ubuntu, Debian
lucid Does not exist

precise Does not exist

trusty Does not exist
(trusty was released [1:2014.1.2-0ubuntu1])
upstream
Released (2014.1.1-3,2014.1.2)
Patches:
upstream: https://review.openstack.org/gitweb?p=openstack%2Fneutron.git;a=commitdiff;h=2c4828e28a5ff6e537be9db4da0e98eca33135d5