Vulnerability Details CVE-2014-3632
The default configuration in a sudoers file in the Red Hat openstack-neutron package before 2014.1.2-4, as used in Red Hat Enterprise Linux Open Stack Platform 5.0 for Red Hat Enterprise Linux 6, allows remote attackers to gain privileges via a crafted configuration file. NOTE: this vulnerability exists because of a CVE-2013-6433 regression.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.012
EPSS Ranking 77.9%
CVSS Severity
CVSS v2 Score 7.6
Products affected by CVE-2014-3632
-
cpe:2.3:a:openstack:neutron:2014.1
-
cpe:2.3:a:openstack:neutron:2014.1.1
-
cpe:2.3:a:openstack:neutron:2014.1.2