GHSA-wf44-4mgj-rwvx

Suggest an improvement
Source
https://github.com/advisories/GHSA-wf44-4mgj-rwvx
Import Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-wf44-4mgj-rwvx/GHSA-wf44-4mgj-rwvx.json
JSON Data
https://api.osv.dev/v1/vulns/GHSA-wf44-4mgj-rwvx
Aliases
Published
2022-05-14T02:19:50Z
Modified
2024-12-04T05:38:59.520051Z
Summary
OpenStack Neutron Improper Input Validation vulnerability
Details

OpenStack Neutron before 2014.2.4 (juno) and 2015.1.x before 2015.1.1 (kilo), when using the IPTables firewall driver, allows remote authenticated users to cause a denial of service (L2 agent crash) by adding an address pair that is rejected by the ipset tool.

Database specific
{
    "nvd_published_at": "2015-08-26T19:59:00Z",
    "cwe_ids": [
        "CWE-20"
    ],
    "severity": "MODERATE",
    "github_reviewed": true,
    "github_reviewed_at": "2023-02-08T18:00:32Z"
}
References

Affected packages

PyPI / neutron

Package

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2014.2.4

Affected versions

0.*

0.0

10.*

10.0.5
10.0.6
10.0.7

11.*

11.0.3
11.0.4
11.0.5
11.0.6
11.0.7
11.0.8

12.*

12.0.0.0b3
12.0.0.0rc1
12.0.0.0rc2
12.0.0
12.0.1
12.0.2
12.0.3
12.0.4
12.0.5
12.0.6
12.1.0
12.1.1

13.*

13.0.0.0b1
13.0.0.0b2
13.0.0.0b3
13.0.0.0rc1
13.0.0.0rc2
13.0.0
13.0.1
13.0.2
13.0.3
13.0.4
13.0.5
13.0.6
13.0.7

14.*

14.0.0.0b1
14.0.0.0b2
14.0.0.0b3
14.0.0.0rc1
14.0.0
14.0.1
14.0.2
14.0.3
14.0.4
14.1.0
14.2.0
14.3.0
14.3.1
14.4.0
14.4.1
14.4.2

15.*

15.0.0.0b1
15.0.0.0rc1
15.0.0.0rc2
15.0.0
15.0.1
15.0.2
15.1.0
15.2.0
15.3.0
15.3.1
15.3.2
15.3.3
15.3.4

16.*

16.0.0.0b1
16.0.0.0rc1
16.0.0.0rc2
16.0.0
16.1.0
16.2.0
16.3.0
16.3.1
16.3.2
16.4.0
16.4.1
16.4.2

17.*

17.0.0.0rc1
17.0.0.0rc2
17.0.0
17.1.0
17.1.1
17.1.2
17.2.0
17.2.1
17.3.0
17.4.0
17.4.1

18.*

18.0.0.0rc1
18.0.0.0rc2
18.0.0
18.1.0
18.1.1
18.2.0
18.3.0
18.4.0
18.5.0
18.6.0

19.*

19.0.0.0rc1
19.0.0.0rc2
19.0.0
19.1.0
19.2.0
19.3.0
19.4.0
19.5.0
19.6.0
19.7.0

20.*

20.0.0.0rc1
20.0.0.0rc2
20.0.0
20.1.0
20.2.0
20.3.0
20.3.1
20.4.0
20.5.0

21.*

21.0.0.0rc1
21.0.0.0rc2
21.0.0
21.1.0
21.1.1
21.1.2
21.2.0
21.2.1

22.*

22.0.0.0rc1
22.0.0.0rc2
22.0.0
22.0.1
22.0.2
22.1.0
22.2.0
22.2.1

23.*

23.0.0.0b1
23.0.0.0b2
23.0.0.0b3
23.0.0.0rc1
23.0.0.0rc2
23.0.0
23.1.0
23.2.0

24.*

24.0.0.0b1
24.0.0.0rc1
24.0.0.0rc2
24.0.0
24.0.1

25.*

25.0.0.0b1
25.0.0.0rc1
25.0.0.0rc2
25.0.0

26.*

26.0.0.0b1
26.0.0.0b2

PyPI / neutron

Package

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2015.1.0
Fixed
2015.1.1