Launch Week Day 1: Announcing Security Design Review
MEDIUM 6.5 PyPI

Denial of service in neutron

GHSA-r3jh-qhgj-gvr8 · CVE-2023-3637

Published · Modified

Description

An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security groups for an invalid project. This issue creates resources that are unconstrained by the user's quota. If a malicious user were to submit a significant number of requests, this could lead to a denial of service.

Ready to move

Start Securing

Free, no credit card | First findings in minutes