Search CVE reports
1 – 10 of 25 results
openvswitch 2.17.8 was discovered to contain a memory leak via the function xmalloc__ in openvswitch-2.17.8/lib/util.c.
1 affected package
openvswitch
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
openvswitch | Not affected | Not affected | Fixed | Not affected |
Some fixes available 6 of 9
A flaw was found in Open vSwitch that allows ICMPv6 Neighbor Advertisement packets between virtual machines to bypass OpenFlow rules. This issue may allow a local attacker to create specially crafted packets with a modified or...
1 affected package
openvswitch
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
openvswitch | Fixed | Fixed | Fixed | Vulnerable |
A flaw was found in Open vSwitch where multiple versions are vulnerable to crafted Geneve packets, which may result in a denial of service and invalid memory accesses. Triggering this issue requires that hardware offloading via...
1 affected package
openvswitch
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
openvswitch | Fixed | Fixed | Fixed | Not affected |
Some fixes available 9 of 10
A flaw was found in openvswitch (OVS). When processing an IP packet with protocol 0, OVS will install the datapath flow without the action modifying the IP header. This issue results (for both kernel and userspace datapath) in...
1 affected package
openvswitch
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
openvswitch | Fixed | Fixed | Fixed | Fixed |
Some fixes available 4 of 5
An integer underflow in Organization Specific TLV was found in various versions of OpenvSwitch.
1 affected package
openvswitch
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
openvswitch | Not affected | Fixed | Fixed | Fixed |
Some fixes available 4 of 5
An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch.
1 affected package
openvswitch
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
openvswitch | Not affected | Fixed | Fixed | Fixed |
In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing...
1 affected package
openvswitch
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
openvswitch | — | Not affected | Not affected | Fixed |
In lldpd before 1.0.13, when decoding SONMP packets in the sonmp_decode function, it's possible to trigger an out-of-bounds heap read via short SONMP packets.
2 affected packages
lldpd, openvswitch
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
lldpd | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
openvswitch | Not affected | Not affected | Not affected | Not affected |
A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing. An attacker could use this flaw to potentially exhaust available memory by keeping sending packet fragments.
1 affected package
openvswitch
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
openvswitch | — | Not affected | Not affected | Not affected |
Some fixes available 2 of 3
Open vSwitch (aka openvswitch) 2.11.0 through 2.15.0 has a use-after-free in decode_NXAST_RAW_ENCAP (called from ofpact_decode and ofpacts_decode) during the decoding of a RAW_ENCAP action.
1 affected package
openvswitch
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
openvswitch | — | Not affected | Fixed | Not affected |