DescriptionVasyl Kaigorodov
2015-01-09 09:47:41 UTC
The below vulnerability in Neutron was reported [1]:
By creating 8 routers and assigning each of them a non-provider ipv6 subnet, a malicious user may block router update processing for all tenants, potentially resulting in a Denial of Service. Only Neutron setups running with radvd 2.0+ are affected.
Patches
~~~~~~~
- https://review.openstack.org/141575 (Juno)
- https://review.openstack.org/138688 (Kilo)