🛡️ USN-6067-1 — neutron

⚪ Unknown ✅ No Known Exploit OSV
N/A
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

neutron vulnerabilities

David Sinquin discovered that OpenStack Neutron incorrectly handled the

default Open vSwitch firewall rules. An attacker could possibly use this

issue to impersonate the IPv6 addresses of other systems on the network.

This issue only affected Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS.

(CVE-2021-20267)

Jake Yip and Justin Mammarella discovered that OpenStack Neutron

incorrectly handled the linuxbridge driver when ebtables-nft is being

used. An attacker could possibly use this issue to impersonate the hardware

addresss of other systems on the network. This issue only affected Ubuntu

18.04 LTS, and Ubuntu 20.04 LTS. (CVE-2021-38598)

Pavel Toporkov discovered that OpenStack Neutron incorrectly handled

extra_dhcp_opts values. An attacker could possibly use this issue to

reconfigure dnsmasq. This issue only affected Ubuntu 18.04 LTS, and Ubuntu

20.04 LTS. (CVE-2021-40085)

Slawek Kaplonski discovered that OpenStack Neutron incorrectly handled the

routes middleware. An attacker could possibly use this issue to cause the

API worker to consume memory, leading to a denial of service. This issue

only affected Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS. (CVE-2021-40797)

It was discovered that OpenStack Neutron incorrectly handled certain

queries. A remote authenticated user could possibly use this issue to cause

resource consumption, leading to a denial of service. (CVE-2022-3277)

Affected software

USN-6067-1 is recorded against 1 package.

  • neutron (fixed in 2:20.3.0-0ubuntu1.1)

Timeline and source

Published on 10 May 2023 and last revised on 27 April 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.

References

ubuntu.com (Advisory)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)
ubuntu.com (Report)

Details

Severity Unknown
CVSS Score N/A
CVSS Vector N/A
CWE N/A
Public Exploit ✅ No
Source OSV
Published 2023-05-10
Updated 2026-08-12
Modified 2026-04-27
Fix URL N/A

Affected Packages

Software From version Fixed in
neutron 2:20.3.0-0ubuntu1.1

Similar Threats

Free Vulnerability Check

Is your site affected by USN-6067-1?

BotEraser helps you identify potentially vulnerable plugins and themes by checking your installation against USN-6067-1 and other known CVE records.

Scan My Site Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.