Vulnerabilities > Redhat > Packstack > 2012.2.1

DATE CVE VULNERABILITY TITLE RISK
2014-12-02 CVE-2014-3703 Permissions, Privileges, and Access Controls vulnerability in Redhat Packstack 2012.2.1
OpenStack PackStack 2012.2.1, when the Open vSwitch (OVS) monolithic plug-in is not used, does not properly set the libvirt_vif_driver configuration option when generating the nova.conf configuration, which causes the firewall to be disabled and allows remote attackers to bypass intended access restrictions.
network
low complexity
redhat CWE-264
5.0