CVE-2018-14635: Input Validation
It was found that a non privileged tenant can add a router interface to a shared / external network's subnet with an IP address outside the subnet's allocation pool. This can result in a Denial of Service.
Upstream issue:
https://bugs.launchpad.net/neutron/+bug/1757482
Upstream patch:
https://git.openstack.org/cgit/openstack/neutron/commit/?id=54aa6e81cb17b33ce4d5d469cc11dec2869c762d
Other sources
When using the Linux bridge ml2 driver, non-privileged tenants are able to create and attach ports without specifying an IP address, bypassing IP address validation. A potential denial of service could occur if an IP address, conflicting with existing guests or routers, is then assigned from outside of the allowed allocation pool. Versions of openstack-neutron before 13.0.0.0b2, 12.0.3 and 11.0.5 are vulnerable.
— MITRE
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2018-14635?
CVE-2018-14635 is a vulnerability that allows non-privileged tenants to create and attach ports without specifying an IP address, bypassing IP address validation.
Which software is affected by CVE-2018-14635?
RedHat OpenStack versions 10, 12, and 13, as well as OpenStack Neutron versions 11.0.0 to 11.0.5, 12.0.0 to 12.0.3, and 13.0.0.0-b1 are affected.
What is the severity of CVE-2018-14635?
The severity of CVE-2018-14635 is medium with a CVSS score of 6.5.
How can I fix CVE-2018-14635?
To fix CVE-2018-14635, update to RedHat OpenStack version 10.7 (or later) for version 10, version 12.0.7 (or later) for version 12, and version 13.0.1 (or later) for version 13.
Where can I find more information about CVE-2018-14635?
You can find more information about CVE-2018-14635 on the RedHat security advisory page: [https://access.redhat.com/errata/RHSA-2018:2710](https://access.redhat.com/errata/RHSA-2018:2710)