Comment 2 for bug 1443798

Revision history for this message
Salvatore Orlando (salvatore-orlando) wrote :

I think this is a valid DOS vector, and there no mitigation that deployers can put into place.
The problem has always been latent but I reckon it's been made evident by a recent change in the neutron source code tree that causes the DCHP port to be created as soon as the subnet is created.

I would however kindly seek validation from another coresec before confirming the security threat.