First published: Mon Jun 13 2016(Updated: )
The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended ICMPv6-spoofing protection mechanism and consequently cause a denial of service or intercept network traffic via a link-local source address.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
OpenStack Neutron | >=7.0.0<7.0.4 | |
OpenStack Neutron | >=8.0.0<=8.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-8914 has a medium severity rating due to the potential for denial of service and traffic interception.
To fix CVE-2015-8914, upgrade OpenStack Neutron to version 7.0.4 or higher, or to version 8.1.0 or higher.
CVE-2015-8914 affects OpenStack Neutron versions before 7.0.4 and from 8.0.0 to 8.1.0.
CVE-2015-8914 allows remote attackers to bypass ICMPv6 spoofing protection, leading to possible denial of service or network traffic interception.
Yes, CVE-2015-8914 is particularly relevant for environments utilizing link-local source addresses in IPv6.