Vulnerability Name:

CVE-2016-5363 (CCN-113942)

Assigned:2016-06-10
Published:2016-06-10
Updated:2016-11-28
Summary:The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended MAC-spoofing protection mechanism and consequently cause a denial of service or intercept network traffic via (1) a crafted DHCP discovery message or (2) crafted non-IP traffic.
CVSS v3 Severity:8.2 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H)
7.1 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): None
Availibility (A): High
4.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N)
3.8 Low (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): Low
Availibility (A): None
CVSS v2 Severity:6.4 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): None
Availibility (A): Partial
4.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:P/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): None
Integrity (I): Partial
Availibility (A): None
Vulnerability Type:CWE-254
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2016-5363

Source: CCN
Type: RHSA-2016-1473
Low: openstack-neutron security and bug fix update

Source: CCN
Type: RHSA-2016-1474
Low: openstack-neutron security, bug fix, and enhancement update

Source: CCN
Type: IBM Security Bulletin T1024250 (Cloud Manager with Openstack)
Open Source OpenStack Neutron ,Horizon and Ironic Vulnerabilities affect IBM Cloud Manager with OpenStack (CVE-2016-4985, CVE-2016-5362, CVE-2015-8914, CVE-2016-5363, CVE-2016-4428)

Source: MLIST
Type: UNKNOWN
[oss-security] 20160610 CVE request for vulnerability in OpenStack Neutron

Source: MLIST
Type: UNKNOWN
[oss-security] 20160610 Re: CVE request for vulnerability in OpenStack Neutron

Source: REDHAT
Type: UNKNOWN
RHSA-2016:1473

Source: REDHAT
Type: UNKNOWN
RHSA-2016:1474

Source: CCN
Type: OSSA-2016-009
Security Groups do not prevent MAC and/or IPv4 spoofing in DHCP requests

Source: CONFIRM
Type: UNKNOWN
https://bugs.launchpad.net/neutron/+bug/1558658

Source: XF
Type: UNKNOWN
openstack-neutron-cve20165363-spoofing(113942)

Source: CONFIRM
Type: UNKNOWN
https://review.openstack.org/#/c/299021/

Source: CONFIRM
Type: UNKNOWN
https://review.openstack.org/#/c/299023/

Source: CONFIRM
Type: UNKNOWN
https://review.openstack.org/#/c/299025/

Source: CONFIRM
Type: Vendor Advisory
https://security.openstack.org/ossa/OSSA-2016-009.html

Source: CCN
Type: OpenStack Web site
Neutron

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2016-5363

Vulnerable Configuration:Configuration 1:
  • cpe:/a:openstack:neutron:7.0.0:*:*:*:*:*:*:*
  • OR cpe:/a:openstack:neutron:7.0.1:*:*:*:*:*:*:*
  • OR cpe:/a:openstack:neutron:7.0.2:*:*:*:*:*:*:*
  • OR cpe:/a:openstack:neutron:7.0.3:*:*:*:*:*:*:*
  • OR cpe:/a:openstack:neutron:7.0.4:*:*:*:*:*:*:*
  • OR cpe:/a:openstack:neutron:8.0.0:*:*:*:*:*:*:*
  • OR cpe:/a:openstack:neutron:8.1.0:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:openstack:neutron:2015.1.0:*:*:*:*:*:*:*
  • OR cpe:/a:openstack:neutron:2015.1.1:*:*:*:*:*:*:*
  • AND
  • cpe:/a:ibm:cloud_manager:4.1.0:*:*:*:*:openstack:*:*
  • OR cpe:/a:ibm:cloud_manager:4.3.0:*:*:*:*:openstack:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:55270
    P
    Security update for postgresql96 (Important)
    2021-11-22
    oval:org.opensuse.security:def:55953
    P
    Security update for sqlite3 (Important)
    2021-09-23
    oval:org.opensuse.security:def:55787
    P
    Security update for clamav (Important)
    2020-12-22
    oval:org.opensuse.security:def:55130
    P
    Security update for spice-gtk (Important)
    2020-12-16
    oval:org.opensuse.security:def:56512
    P
    Security update for glibc (Important)
    2020-12-01
    oval:org.opensuse.security:def:55508
    P
    Security update for flash-player (Important)
    2020-12-01
    oval:org.opensuse.security:def:56238
    P
    Security update for gdk-pixbuf (Low)
    2020-12-01
    oval:org.opensuse.security:def:55108
    P
    fontconfig on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:56550
    P
    Security update for util-linux (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55681
    P
    Security update for libssh (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:56346
    P
    Security update for systemd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:56631
    P
    Security update for pam_pkcs11 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:56438
    P
    Security update for freerdp (Important)
    2020-12-01
    oval:org.opensuse.security:def:55107
    P
    finch on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:20165363
    V
    CVE-2016-5363
    2020-11-28
    oval:com.ubuntu.bionic:def:201653630000000
    V
    CVE-2016-5363 on Ubuntu 18.04 LTS (bionic) - low.
    2016-06-17
    oval:com.ubuntu.artful:def:20165363000
    V
    CVE-2016-5363 on Ubuntu 17.10 (artful) - low.
    2016-06-17
    oval:com.ubuntu.xenial:def:20165363000
    V
    CVE-2016-5363 on Ubuntu 16.04 LTS (xenial) - low.
    2016-06-17
    oval:com.ubuntu.xenial:def:201653630000000
    V
    CVE-2016-5363 on Ubuntu 16.04 LTS (xenial) - low.
    2016-06-17
    oval:com.ubuntu.bionic:def:20165363000
    V
    CVE-2016-5363 on Ubuntu 18.04 LTS (bionic) - low.
    2016-06-17
    oval:com.ubuntu.disco:def:201653630000000
    V
    CVE-2016-5363 on Ubuntu 19.04 (disco) - low.
    2016-06-17
    oval:com.ubuntu.cosmic:def:20165363000
    V
    CVE-2016-5363 on Ubuntu 18.10 (cosmic) - low.
    2016-06-17
    oval:com.ubuntu.cosmic:def:201653630000000
    V
    CVE-2016-5363 on Ubuntu 18.10 (cosmic) - low.
    2016-06-17
    oval:com.ubuntu.trusty:def:20165363000
    V
    CVE-2016-5363 on Ubuntu 14.04 LTS (trusty) - low.
    2016-06-17
    BACK
    openstack neutron 7.0.0
    openstack neutron 7.0.1
    openstack neutron 7.0.2
    openstack neutron 7.0.3
    openstack neutron 7.0.4
    openstack neutron 8.0.0
    openstack neutron 8.1.0
    openstack neutron 2015.1.0
    openstack neutron 2015.1.1
    ibm cloud manager 4.1.0
    ibm cloud manager 4.3.0