OSSA-2024-005: Authorization bypassed when setting tags on Neutron networks

Date:

December 03, 2024

CVE:

CVE-2024-53916

Affects

  • Neutron: >=23.0.0 <23.2.1, >=24.0.0 <24.0.2, >=25.0.0 <25.0.1

Description

Tore Anderson of Redpill Linpro AS discovered that Neutron does not apply the proper policy check for changing network tags. An unprivileged tenant is able to change (add and clear) tags on network objects which do not belong to the tenant, and this action is not being subjected to the proper policy authorization check.

Patches

Credits

  • Tore Anderson from Redpill Linpro AS (CVE-2024-53916)

References