QID 997506

Date Published: 2024-02-26

QID 997506: Python (Pip) Security Update for neutron (GHSA-fh73-gjvg-349c)

An issue was discovered in OpenStack Neutron before 16.4.1, 17.x before 17.2.1, and 18.x before 18.1.1. Authenticated attackers can reconfigure dnsmasq via a crafted extra_dhcp_opts value.

Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.

  • CVSS V3 rated as High - 6.5 severity.
  • CVSS V2 rated as Medium - 4 severity.
  • Solution
    Refer to Github security advisory GHSA-fh73-gjvg-349c for updates and patch information.
    Vendor References

    CVEs related to QID 997506

    Software Advisories
    Advisory ID Software Component Link
    GHSA-fh73-gjvg-349c neutron URL Logo github.com/advisories/GHSA-fh73-gjvg-349c