CVE-2016-5362: High severity neutron vulnerability
A vulnerability in Neutron anti-spoof protection. By forging DHCP discovery messages or non-IP traffic, such as ARP or ICMPv6, an instance may spoof IP or MAC source addresses on attached networks resulting in denial of services and/or traffic interception. Moreover when L2population isn't used, other tenants attached to a shared network are also vulnerable. Neutron setups using the IPTables firewall driver are affected.
Upstream bug:
https://bugs.launchpad.net/bugs/1558658
References:
http://seclists.org/oss-sec/2016/q2/519
Other sources
The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended DHCP-spoofing protection mechanism and consequently cause a denial of service or intercept network traffic via a crafted DHCP discovery message.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-5362?
CVE-2016-5362 has a severity rating that indicates a medium risk of remote denial of service attacks and network traffic interception.
How do I fix CVE-2016-5362?
To fix CVE-2016-5362, upgrade OpenStack Neutron to version 7.0.4 or 8.1.0 and above to mitigate the vulnerability.
What systems are affected by CVE-2016-5362?
CVE-2016-5362 affects OpenStack Neutron versions before 7.0.4 and from 8.0.0 to 8.1.0.
What can attackers achieve by exploiting CVE-2016-5362?
Attackers exploiting CVE-2016-5362 can bypass DHCP-spoofing protections, allowing them to intercept network traffic or cause denial of service.
Is CVE-2016-5362 a local or remote vulnerability?
CVE-2016-5362 is classified as a remote vulnerability, allowing external attackers to exploit it without physical access.