Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 585534 - <sys-cluster/neutron-{7.1.0,8.1.2}: IPTables firewall anti-spoof protection bypass
Summary: <sys-cluster/neutron-{7.1.0,8.1.2}: IPTables firewall anti-spoof protection b...
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal minor (vote)
Assignee: Gentoo Security
URL: http://www.openwall.com/lists/oss-sec...
Whiteboard: B3 [noglsa]
Keywords:
Depends on: 587850
Blocks:
  Show dependency tree
 
Reported: 2016-06-10 15:14 UTC by Agostino Sarubbo
Modified: 2016-12-06 14:29 UTC (History)
2 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Agostino Sarubbo gentoo-dev 2016-06-10 15:14:36 UTC
From ${URL} :

Title: Neutron IPTables firewall anti-spoof protection bypass
Reporter: Romain Aviolat (Nagravision) and
          Dustin Lundquist (Blue Box Group, Inc)
Products: Neutron
Affects: <=7.0.4, >=8.0.0 <=8.1.0

Description:
Romain Aviolat from Nagravision and Dustin Lundquist from
Blue Box Group, Inc independently reported vulnerabilities in Neutron
anti-spoof protection. By forging DHCP discovery messages or non-IP
traffic, such as ARP or ICMPv6, an instance may spoof IP or MAC source
addresses on attached networks resulting in denial of services and/or
traffic interception. Moreover when L2population isn't used, other
tenants attached to a shared network are also vulnerable. Neutron
setups using the IPTables firewall driver are affected.

References:
https://bugs.launchpad.net/bugs/1502933 (icmpv6)
https://bugs.launchpad.net/bugs/1558658 (mac, dhcp)



@maintainer(s): after the bump, in case we need to stabilize the package, please let us know if it is ready for the stabilization or not.
Comment 1 Thomas Deutschmann (RETIRED) gentoo-dev 2016-12-05 20:53:40 UTC
@ Security: Please vote!
Comment 2 Aaron Bauman (RETIRED) gentoo-dev 2016-12-06 14:29:54 UTC
GLSA Vote: No