REDHAT-BUG-2222270: Medium severity neutron vulnerability
An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security groups for an invalid project. This issue creates resources that are unconstrained by the user's quota. If a malicious user were to submit a significant number of requests, this could lead to a denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2222270?
The severity of REDHAT-BUG-2222270 is considered critical due to the potential for resource exhaustion and abuse by authenticated users.
How do I fix REDHAT-BUG-2222270?
To fix REDHAT-BUG-2222270, apply the latest security patches provided by Red Hat for OpenStack Neutron.
Who is affected by REDHAT-BUG-2222270?
Users of OpenStack Neutron are affected by REDHAT-BUG-2222270, particularly those who allow remote authenticated users to query security groups.
What is an uncontrolled resource consumption flaw in REDHAT-BUG-2222270?
The uncontrolled resource consumption flaw in REDHAT-BUG-2222270 allows unauthorized resource usage by querying invalid projects.
How can REDHAT-BUG-2222270 be exploited?
REDHAT-BUG-2222270 can be exploited by malicious authenticated users to consume resources without being limited by user quotas.