CVE-2014-6414

OpenStack Neutron <2014.2.4-2014.1.2 - Privilege Escalation

Title source: llm
STIX 2.1

Description

OpenStack Neutron before 2014.2.4 and 2014.1 before 2014.1.2 allows remote authenticated users to set admin network attributes to default values via unspecified vectors.

References (7)

Core 7
Core References
Patch, Third Party Advisory x_refsource_confirm
https://bugs.launchpad.net/neutron/+bug/1357379
Mailing List, Third Party Advisory mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2014/09/15/5
Third Party Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2014-1686.html
Third Party Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2014-1786.html
Third Party Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2014-1785.html
Third Party Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/USN-2408-1
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/62299

Scores

EPSS 0.0057
EPSS Percentile 68.9%

Details

CWE
CWE-264
Status published
Products (2)
canonical/ubuntu_linux 14.04
openstack/neutron 2013.2 - 2013.2.4
Published Oct 02, 2014
Tracked Since Feb 18, 2026