Executive brief
An issue was discovered in OpenStack Neutron before 16.4.1, 17.x before 17.2.1, and 18.x before 18.1.1. Authenticated attackers can reconfigure dnsmasq via a crafted extra_dhcp_opts value.
Affected products
- PyPI neutron
Junglewise Threat Intelligence
CVE-2021-40085 · Severity: low · CVSS 3.1 · Published 2021-08-31
Technologies: neutron (PyPI). Vendors: PyPI.
An issue was discovered in OpenStack Neutron before 16.4.1, 17.x before 17.2.1, and 18.x before 18.1.1. Authenticated attackers can reconfigure dnsmasq via a crafted extra_dhcp_opts value.