CVE-2017-7543Medium· 5.9▾ SunlitOpenStack Neutron Race Condition vulnerability
▾ Sunlit zone — Low / medium · no exploitation signal
impact 32.5 · likelihood 0.4 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 8.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via OSV
1.8%
1.8% → 1.9%
Last analysed / modified upstream
A race-condition flaw was discovered in openstack-neutron before 7.2.0-12.1, 8.x before 8.3.0-11.1, 9.x before 9.3.1-2.1, and 10.x before 10.0.2-1.1, where, following a minor overcloud update, neutron security groups were disabled. Specifically, the following were reset to 0: net.bridge.bridge-nf-call-ip6tables and net.bridge.bridge-nf-call-iptables. The race was only triggered by an update, at which point an attacker could access exposed tenant VMs and network resources.
neutron < 7.2.0-12.1neutron >= 8.0.0, < 8.3.0-11.1neutron >= 9.0.0, < 9.3.1-2.1neutron >= 10.0.0, < 10.0.2-1.1Upgrade to a patched release:
neutron 7.2.0-12.1neutron 8.3.0-11.1neutron 9.3.1-2.1neutron 10.0.2-1.1Connected by shared product, vendor, weakness, or advisory.
CVE-2015-3221MediumOpenStack Neutron Improper Input Validation vulnerability
CVE-2014-0056MediumOpenStack Neutron Improper Authentication vulnerability
CVE-2026-50266Low· 2.2OpenStack Neutron: Neutron port RBAC policy bypass allows project managers to set trusted device owners on shared networks
CVE-2026-49299MediumOpenStack Neutron has an Incorrect Authorization issue
CVE-2022-3277Medium· 6.5openstack-neutron uncontrolled resource consumption flaw
CVE-2023-3637Medium· 6.5Denial of service in neutron