NA

CVE-2022-3277

Published: 06/03/2023 Updated: 13/03/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security groups for an invalid project. This issue creates resources that are unconstrained by the user's quota. If a malicious user were to submit a significant number of requests, this could lead to a denial of service.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat openstack platform 16.1

redhat openstack platform 13.0

redhat openstack platform 16.2

openstack neutron

Vendor Advisories

Debian Bug report logs - #1027150 neutron: CVE-2022-3277 Package: src:neutron; Maintainer for src:neutron is Debian OpenStack <team+openstack@trackerdebianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Wed, 28 Dec 2022 17:48:01 UTC Severity: important Tags: security, upstream Reply or subscribe ...
Synopsis Moderate: Red Hat OpenStack Platform 1619 (openstack-neutron) security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for openstack-neutron is now available for Red Hat OpenStackPlatform 1619 ...
Synopsis Moderate: Red Hat OpenStack Platform 1624 (openstack-neutron) security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for openstack-neutron is now available for Red Hat OpenStackPlatform 1624 ...
Description<!----> This CVE is under investigation by Red Hat Product Security ...