Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3q99-mmr6-6chg

Опубликовано: 29 сент. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.

In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.

EPSS

Процентиль: 68%
0.00584
Низкий

8.8 High

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 6.1
ubuntu
больше 3 лет назад

In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.

CVSS3: 8.6
redhat
больше 3 лет назад

In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.

CVSS3: 6.1
nvd
больше 3 лет назад

In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.

CVSS3: 6.1
debian
больше 3 лет назад

In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer o ...

suse-cvrf
около 3 лет назад

Security update for openvswitch

EPSS

Процентиль: 68%
0.00584
Низкий

8.8 High

CVSS3

Дефекты

CWE-125