CVE-2016-5363

Published: 17 June 2016

The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended MAC-spoofing protection mechanism and consequently cause a denial of service or intercept network traffic via (1) a crafted DHCP discovery message or (2) crafted non-IP traffic.

Priority

Low

CVSS 3 base score: 8.2

Status

Package Release Status
neutron
Launchpad, Ubuntu, Debian
Upstream Needs triage

Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(2:11.0.0~rc2-0ubuntu1)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(2:8.4.0-0ubuntu4)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist
(trusty was needed)