OpenStack PackStack 2012.2.1, when the Open vSwitch (OVS) monolithic plug-in is not used, does not properly set the libvirt_vif_driver configuration option when generating the nova.conf configuration, which causes the firewall to be disabled and allows remote attackers to bypass intended access restrictions.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2014-12-02T01:00:00
Updated: 2024-08-06T10:50:18.254Z
Reserved: 2014-05-14T00:00:00
Link: CVE-2014-3703
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-12-02T01:59:03.653
Modified: 2024-11-21T02:08:41.970
Link: CVE-2014-3703
Redhat