Openvswitch

Openvswitch

22 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.15%
  • Published 22.02.2024 13:15:07
  • Last modified 16.05.2025 14:17:01

A flaw was found in Open vSwitch where multiple versions are vulnerable to crafted Geneve packets, which may result in a denial of service and invalid memory accesses. Triggering this issue requires that hardware offloading via the netlink path is en...

  • EPSS 0.08%
  • Published 19.01.2024 15:15:09
  • Last modified 02.06.2025 15:15:31

openvswitch 2.17.8 was discovered to contain a memory leak via the function xmalloc__ in openvswitch-2.17.8/lib/util.c.

  • EPSS 0.03%
  • Published 06.10.2023 18:15:12
  • Last modified 21.11.2024 08:41:37

A flaw was found in Open vSwitch that allows ICMPv6 Neighbor Advertisement packets between virtual machines to bypass OpenFlow rules. This issue may allow a local attacker to create specially crafted packets with a modified or spoofed target IP addre...

  • EPSS 0.47%
  • Published 10.01.2023 22:15:14
  • Last modified 21.11.2024 07:35:05

An integer underflow in Organization Specific TLV was found in various versions of OpenvSwitch.

  • EPSS 0.38%
  • Published 10.01.2023 22:15:13
  • Last modified 21.11.2024 07:35:04

An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch.

Exploit
  • EPSS 0.61%
  • Published 08.09.2022 23:15:10
  • Last modified 21.11.2024 04:39:53

The TSS (Tuple Space Search) algorithm in Open vSwitch 2.x through 2.17.2 and 3.0.0 allows remote attackers to cause a denial of service (delays of legitimate traffic) via crafted packet data that requires excessive evaluation time within the packet ...

  • EPSS 0.13%
  • Published 29.08.2022 15:15:09
  • Last modified 21.11.2024 06:39:08

A flaw was found in dpdk. This flaw allows a malicious vhost-user master to attach an unexpected number of fds as ancillary data to VHOST_USER_GET_INFLIGHT_FD / VHOST_USER_SET_INFLIGHT_FD messages that are not closed by the vhost-user slave. By sendi...

Exploit
  • EPSS 0.14%
  • Published 23.08.2022 16:15:10
  • Last modified 21.11.2024 06:22:44

A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing. An attacker could use this flaw to potentially exhaust available memory by keeping sending packet fragments.

  • EPSS 0.1%
  • Published 20.07.2021 07:15:08
  • Last modified 05.05.2025 17:17:25

Open vSwitch (aka openvswitch) 2.11.0 through 2.15.0 has a use-after-free in decode_NXAST_RAW_ENCAP (called from ofpact_decode and ofpacts_decode) during the decoding of a RAW_ENCAP action.

  • EPSS 0.42%
  • Published 18.03.2021 17:15:13
  • Last modified 21.11.2024 05:21:53

A flaw was found in multiple versions of OpenvSwitch. Specially crafted LLDP packets can cause memory to be lost when allocating data to handle specific optional TLVs, potentially causing a denial of service. The highest threat from this vulnerabilit...