A flaw was found in openstack-neutron's default Open vSwitch firewall rules. By sending carefully crafted packets, anyone in control of a server instance connected to the virtual switch can impersonate the IPv6 addresses of other systems on the network, resulting in denial of service or in some cases possibly interception of traffic intended for other destinations. Only deployments using the Open vSwitch driver are affected. Source: OpenStack project. Versions before openstack-neutron 15.3.3, openstack-neutron 16.3.1 and openstack-neutron 17.1.1 are affected.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2021-05-28T18:46:11

Updated: 2024-08-03T17:37:23.213Z

Reserved: 2020-12-17T00:00:00

Link: CVE-2021-20267

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-05-28T19:15:07.483

Modified: 2022-10-07T03:00:31.947

Link: CVE-2021-20267

cve-icon Redhat

Severity : Moderate

Publid Date: 2020-11-05T00:00:00Z

Links: CVE-2021-20267 - Bugzilla