PackStack in Red Hat OpenStack 4.0 does not enforce the default security groups when deployed to Neutron, which allows remote attackers to bypass intended access restrictions and make unauthorized connections.
References
Configurations
History
21 Nov 2024, 02:01
Type | Values Removed | Values Added |
---|---|---|
References | () http://rhn.redhat.com/errata/RHSA-2014-0233.html - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/66001 - | |
References | () https://bugzilla.redhat.com/show_bug.cgi?id=1064163 - |
Information
Published : 2014-04-17 14:55
Updated : 2024-11-21 02:01
NVD link : CVE-2014-0071
Mitre link : CVE-2014-0071
CVE.ORG link : CVE-2014-0071
JSON object : View
Products Affected
redhat
- openstack
CWE
CWE-264
Permissions, Privileges, and Access Controls