CVE-2017-5936
EUVD-2017-007812.04.2017, 22:59
OpenStack Nova-LXD before 13.1.1 uses the wrong name for the veth pairs when applying Neutron security group rules for instances, which allows remote attackers to bypass intended security restrictions.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| canonical | ubuntu_linux | 16.04 |
| openstack | nova-lxd | 𝑥 ≤ 13.1.0 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References