Vulnerability Name:

CVE-2019-10876 (CCN-159259)

Assigned:2019-04-05
Published:2019-04-05
Updated:2021-08-04
Summary:An issue was discovered in OpenStack Neutron 11.x before 11.0.7, 12.x before 12.0.6, and 13.x before 13.0.3. By creating two security groups with separate/overlapping port ranges, an authenticated user may prevent Neutron from being able to configure networks on any compute nodes where those security groups are present, because of an Open vSwitch (OVS) firewall KeyError. All Neutron deployments utilizing neutron-openvswitch-agent are affected.
CVSS v3 Severity:6.5 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N)
5.7 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): None
Availibility (A): None
4.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L)
3.8 Low (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Low
CVSS v2 Severity:4.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Partial
Integrity (I): None
Availibility (A): None
4.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
Vulnerability Type:CWE-noinfo
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2019-10876

Source: MLIST
Type: Mailing List, Third Party Advisory
[oss-security] 20190409 [OSSA-2019-002] neutron-openvswitch-agent: Unable to install new flows on compute nodes when having broken security group rules (CVE-2019-10876)

Source: REDHAT
Type: Third Party Advisory
RHSA-2019:0879

Source: REDHAT
Type: Third Party Advisory
RHSA-2019:0935

Source: MISC
Type: Issue Tracking, Third Party Advisory
https://bugs.launchpad.net/ossa/+bug/1813007

Source: CCN
Type: Launchpad Bug #1813007
[SRU] Unable to install new flows on compute nodes when having broken security group rules (CVE-2019-10876)

Source: XF
Type: UNKNOWN
openstack-cve201910876-dos(159259)

Source: MISC
Type: Vendor Advisory
https://review.openstack.org/#/q/topic:bug/1813007

Source: CCN
Type: oss-sec Mailing List, Tue, 9 Apr 2019 10:51:04 -0500
[OSSA-2019-002] neutron-openvswitch-agent: Unable to install new flows on compute nodes when having broken security group rules (CVE-2019-10876)

Source: CONFIRM
Type: Third Party Advisory
https://security.openstack.org/ossa/OSSA-2019-002.html

Source: CCN
Type: IBM Security Bulletin 1074813 (PowerVC Standard)
PowerVC is impacted by an OpenStack Neutron vulnerability related to security group rules (CVE-2019-10876)

Source: CCN
Type: OpenStack Web site
OpenStack Neutron

Vulnerable Configuration:Configuration 1:
  • cpe:/a:openstack:neutron:*:*:*:*:*:*:*:* (Version >= 12.0.0 and < 12.0.6)
  • OR cpe:/a:openstack:neutron:*:*:*:*:*:*:*:* (Version >= 11.0.0 and < 11.0.7)
  • OR cpe:/a:openstack:neutron:*:*:*:*:*:*:*:* (Version >= 13.0.0 and < 13.0.3)

  • Configuration 2:
  • cpe:/a:redhat:openstack:13:*:*:*:*:*:*:*
  • OR cpe:/a:redhat:openstack:14:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:openstack:neutron:11.0.6:*:*:*:*:*:*:*
  • OR cpe:/a:openstack:neutron:12.0.5:*:*:*:*:*:*:*
  • OR cpe:/a:openstack:neutron:13.0.2:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:201910876
    V
    CVE-2019-10876
    2022-05-22
    oval:org.opensuse.security:def:59617
    P
    Security update for libvirt (Important)
    2022-01-10
    oval:org.opensuse.security:def:60407
    P
    Security update for tomcat (Important)
    2021-11-03
    oval:org.opensuse.security:def:59556
    P
    Security update for transfig (Important)
    2021-10-29
    oval:org.opensuse.security:def:60367
    P
    Security update for MozillaFirefox (Important)
    2021-09-22
    oval:org.opensuse.security:def:61590
    P
    libvpx4-1.6.1-4.16 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61591
    P
    libwavpack1-5.1.0-4.3.5 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61614
    P
    p7zip-16.02-5.10 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61671
    P
    unzip-6.00-4.8.13 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:59800
    P
    Security update for ghostscript (Critical)
    2021-09-21
    oval:org.opensuse.security:def:63235
    P
    rsyslog-module-gssapi-8.33.1-3.9.1 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61672
    P
    update-alternatives-1.19.0.4-2.48 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:63237
    P
    sblim-sfcb-1.4.9-3.7 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:63475
    P
    graphviz-gnome-2.40.1-6.6.8 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:63425
    P
    lame-3.100-1.33 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:63509
    P
    postgresql-test-13-8.30 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:63374
    P
    sca-patterns-sle12-1.0.2-1.1 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:63333
    P
    ipmitool-bmc-snmp-proxy-1.8.18+git20200204.7ccea28-1.22 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:63324
    P
    dovecot23-2.3.11.3-17.5.1 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:63372
    P
    salt-api-3002.2-6.1 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:62336
    P
    tar-1.30-3.6.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:63039
    P
    perl-solv-0.7.19-3.20.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:63003
    P
    cvs-1.12.12-2.30 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62056
    P
    curl-7.66.0-4.14.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62250
    P
    libyaml-0-2-0.1.7-1.17 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62140
    P
    libblkid-devel-2.36.2-2.29 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:60271
    P
    Security update for libwebp (Critical)
    2021-06-02
    oval:org.opensuse.security:def:59856
    P
    Security update for python-cryptography (Important)
    2021-03-02
    oval:org.opensuse.security:def:60449
    P
    Security update for wpa_supplicant (Important)
    2021-02-15
    oval:org.opensuse.security:def:60487
    P
    Security update for the Linux Kernel (Moderate)
    2021-01-12
    oval:org.opensuse.security:def:60155
    P
    Security update for curl (Moderate)
    2020-12-10
    oval:org.opensuse.security:def:62590
    P
    libyaml-cpp0_6-0.6.1-2.15 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63407
    P
    jakarta-taglibs-standard-1.1.1-2.42 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62909
    P
    ncurses-devel-32bit-6.1-5.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62468
    P
    librsvg-devel-2.42.3-1.49 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62682
    P
    libmms-devel-0.6.4-1.24 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63141
    P
    apache2-mod_jk-1.2.43-1.36 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61783
    P
    libHX-devel-3.22-1.26 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63134
    P
    clamsap-0.99.25-2.37 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63273
    P
    libfpm_pb0-1.1.1-2.29 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61695
    P
    apparmor-abstractions-2.13.4-1.4 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61866
    P
    libpolkit0-0.116-1.51 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62380
    P
    slirp4netns-0.4.5-3.9.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:59123
    P
    Security update for the Linux Kernel (Live Patch 32 for SLE 12 SP2) (Important)
    2020-12-01
    oval:org.opensuse.security:def:59184
    P
    Security update for the Linux Kernel (Live Patch 24 for SLE 12 SP2) (Important)
    2020-12-01
    oval:org.opensuse.security:def:60525
    P
    python-requests on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:59375
    P
    Security update for python-cffi, python-cryptography (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:59206
    P
    Security update for webkit2gtk3 (Important)
    2020-12-01
    oval:org.opensuse.security:def:60622
    P
    Security update for python-SQLAlchemy (Important)
    2020-12-01
    oval:org.opensuse.security:def:60576
    P
    xorg-x11-libs on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:59364
    P
    Security update for log4j (Important)
    2020-12-01
    oval:org.opensuse.security:def:60706
    P
    Security update for virglrenderer (Important)
    2020-12-01
    oval:org.opensuse.security:def:59671
    P
    Security update for apache2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:60526
    P
    python3 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:60744
    P
    Security update for libX11 (Important)
    2020-12-01
    oval:org.opensuse.security:def:60604
    P
    Security update for ardana and crowbar (Important)
    2020-12-01
    oval:org.opensuse.security:def:60835
    P
    Security update for python-cffi, python-cryptography (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:58944
    P
    Security update for librelp (Important)
    2020-12-01
    oval:org.opensuse.security:def:59918
    P
    Security update for the Linux Kernel (Live Patch 28 for SLE 12 SP2) (Important)
    2020-12-01
    oval:org.opensuse.security:def:60785
    P
    Security update for apache-commons-httpclient (Important)
    2020-12-01
    oval:org.opensuse.security:def:58945
    P
    Security update for LibVNCServer (Important)
    2020-12-01
    oval:org.opensuse.security:def:60107
    P
    Security update for the Linux Kernel (Live Patch 32 for SLE 12 SP2) (Important)
    2020-12-01
    oval:org.opensuse.security:def:60864
    P
    Security update for ardana and crowbar (Important)
    2020-12-01
    oval:org.opensuse.security:def:58967
    P
    Security update for the Linux Kernel (Live Patch 11 for SLE 12 SP2) (Important)
    2020-12-01
    oval:org.opensuse.security:def:59183
    P
    Security update for the Linux Kernel (Live Patch 26 for SLE 12 SP2) (Important)
    2020-12-01
    oval:org.opensuse.security:def:87980
    P
    Security update for ardana packages (Moderate)
    2019-08-05
    oval:org.opensuse.security:def:88280
    P
    Security update for ardana packages (Moderate)
    2019-08-05
    oval:org.opensuse.security:def:83870
    P
    Security update for ardana and crowbar (Important)
    2019-07-17
    oval:org.opensuse.security:def:84317
    P
    Security update for ardana and crowbar (Important)
    2019-07-17
    oval:com.ubuntu.cosmic:def:201910876000
    V
    CVE-2019-10876 on Ubuntu 18.10 (cosmic) - medium.
    2019-04-05
    oval:com.ubuntu.cosmic:def:2019108760000000
    V
    CVE-2019-10876 on Ubuntu 18.10 (cosmic) - medium.
    2019-04-05
    oval:com.ubuntu.disco:def:2019108760000000
    V
    CVE-2019-10876 on Ubuntu 19.04 (disco) - medium.
    2019-04-05
    oval:com.ubuntu.bionic:def:201910876000
    V
    CVE-2019-10876 on Ubuntu 18.04 LTS (bionic) - medium.
    2019-04-05
    oval:com.ubuntu.bionic:def:2019108760000000
    V
    CVE-2019-10876 on Ubuntu 18.04 LTS (bionic) - medium.
    2019-04-05
    oval:com.ubuntu.xenial:def:201910876000
    V
    CVE-2019-10876 on Ubuntu 16.04 LTS (xenial) - medium.
    2019-04-05
    oval:com.ubuntu.xenial:def:2019108760000000
    V
    CVE-2019-10876 on Ubuntu 16.04 LTS (xenial) - medium.
    2019-04-05
    oval:com.ubuntu.trusty:def:201910876000
    V
    CVE-2019-10876 on Ubuntu 14.04 LTS (trusty) - medium.
    2019-04-05
    BACK
    openstack neutron *
    openstack neutron *
    openstack neutron *
    redhat openstack 13
    redhat openstack 14
    openstack neutron 11.0.6
    openstack neutron 12.0.5
    openstack neutron 13.0.2