Candidate: CVE-2015-8914 PublicDate: 2016-06-17 15:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-8914 Description: The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended ICMPv6-spoofing protection mechanism and consequently cause a denial of service or intercept network traffic via a link-local source address. Ubuntu-Description: Notes: Bugs: https://bugs.launchpad.net/bugs/1502933 Priority: low Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H [9.1 CRITICAL] Patches_neutron: upstream: https://git.openstack.org/cgit/openstack/neutron/commit/?id=3e66b1a87544d7a127abceec13bfeacb8f18f7e1 upstream: https://review.openstack.org/#/c/310652/ (liberty) upstream_neutron: needs-triage precise_neutron: DNE precise/esm_neutron: DNE trusty_neutron: ignored (reached end-of-life) trusty/esm_neutron: DNE (trusty was needed) vivid/stable-phone-overlay_neutron: DNE vivid/ubuntu-core_neutron: DNE wily_neutron: ignored (reached end-of-life) xenial_neutron: not-affected (2:8.4.0-0ubuntu4) esm-infra/xenial_neutron: not-affected (2:8.4.0-0ubuntu4) yakkety_neutron: ignored (reached end-of-life) zesty_neutron: not-affected (2:10.0.2-0ubuntu1.1) artful_neutron: not-affected (2:11.0.0~rc2-0ubuntu1) bionic_neutron: not-affected (2:11.0.0~rc2-0ubuntu1) cosmic_neutron: not-affected (2:11.0.0~rc2-0ubuntu1) disco_neutron: not-affected (2:11.0.0~rc2-0ubuntu1) devel_neutron: not-affected (2:11.0.0~rc2-0ubuntu1)