7.6
CVSSv2

CVE-2013-6433

Published: 02/06/2014 Updated: 19/10/2018
CVSS v2 Base Score: 7.6 | Impact Score: 10 | Exploitability Score: 4.9
VMScore: 676
Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

The default configuration in the Red Hat openstack-neutron package prior to 2013.2.3-7 does not properly set a configuration file for rootwrap, which allows remote malicious users to gain privileges via a crafted configuration file.

Vulnerable Product Search on Vulmon Subscribe to Product

openstack neutron

canonical ubuntu linux 13.10

canonical ubuntu linux 14.04

Vendor Advisories

Several security issues were fixed in OpenStack Neutron ...
The default configuration in the Red Hat openstack-neutron package before 201323-7 does not properly set a configuration file for rootwrap, which allows remote attackers to gain privileges via a crafted configuration file ...