CVE-2014-3555

Openstack Neutron < 2013.2.4 - Access Control

Title source: rule

Description

OpenStack Neutron before 2013.2.4, 2014.x before 2014.1.2, and Juno before Juno-2 allows remote authenticated users to cause a denial of service (crash or long firewall rule updates) by creating a large number of allowed address pairs.

Scores

EPSS 0.0093
EPSS Percentile 75.8%

Classification

CWE
CWE-264
Status draft

Affected Products (5)

openstack/neutron
openstack/neutron
openstack/neutron
openstack/neutron
pypi/neutron < 2013.2.4PyPI

Timeline

Published Jul 23, 2014
Tracked Since Feb 18, 2026