Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add FILTER to VM_RESTRICTED_ATTR #3092

Closed
7 tasks
kvaps opened this issue Mar 18, 2019 · 0 comments
Closed
7 tasks

Add FILTER to VM_RESTRICTED_ATTR #3092

kvaps opened this issue Mar 18, 2019 · 0 comments

Comments

@kvaps
Copy link
Contributor

kvaps commented Mar 18, 2019

Vulnerability Details
Any user can override FILTER via template and disable antispoofing protection.

To Reproduce

  • Create template with:
    NIC_DEFAULT = [ FILTER = "allow-arp" ]
    
  • Instantiate it

Version
Completed for affected components

  • Affected Component: Core
  • Hypervisor: KVM
  • OpenNebula Version: 5.6.1

Additional context
Add any other context about the problem here.

Progress Status

  • Branch created
  • Code committed to development branch
  • Testing - QA
  • Documentation
  • Release notes - resolved issues, compatibility, known issues
  • Code committed to upstream release/hotfix branches
  • Documentation committed to upstream release/hotfix branches
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

3 participants