Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Slawek Kaplonski

Researcher fromRed Hat
#41099of 56,335
7.1Total CVSS
Vulnerabilities · 1
PT-2021-22954
7.1
2021-09-08
Openstack · Openstack Neutron · CVE-2021-40797
**Name of the Vulnerable Software and Affected Versions** OpenStack Neutron versions prior to 16.4.1 OpenStack Neutron versions 17.x prior to 17.2.1 OpenStack Neutron versions 18.x prior to 18.1.1 **Description** An issue in the routes middleware allows an authenticated user to cause API performance degradation or denial of service by making API requests involving nonexistent controllers, resulting in the API worker consuming increasing amounts of memory. **Recommendations** For OpenStack Neutron versions prior to 16.4.1, update to version 16.4.1 or later. For OpenStack Neutron versions 17.x prior to 17.2.1, update to version 17.2.1 or later. For OpenStack Neutron versions 18.x prior to 18.1.1, update to version 18.1.1 or later.