Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-3905

Опубликовано: 23 авг. 2022
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing. An attacker could use this flaw to potentially exhaust available memory by keeping sending packet fragments.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:openvswitch:openvswitch:*:*:*:*:*:*:*:*
Версия до 2.17.0 (исключая)
Конфигурация 2

Одно из

cpe:2.3:a:redhat:enterprise_linux_fast_datapath:7.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:enterprise_linux_fast_datapath:8.0:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:21.10:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*

EPSS

Процентиль: 37%
0.00158
Низкий

7.5 High

CVSS3

Дефекты

CWE-401
CWE-401

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 3 лет назад

A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing. An attacker could use this flaw to potentially exhaust available memory by keeping sending packet fragments.

CVSS3: 7.5
redhat
больше 4 лет назад

A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing. An attacker could use this flaw to potentially exhaust available memory by keeping sending packet fragments.

CVSS3: 7.5
msrc
больше 3 лет назад

A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing. An attacker could use this flaw to potentially exhaust available memory by keeping sending packet fragments.

CVSS3: 7.5
debian
больше 3 лет назад

A memory leak was found in Open vSwitch (OVS) during userspace IP frag ...

CVSS3: 7.5
github
больше 3 лет назад

A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing. An attacker could use this flaw to potentially exhaust available memory by keeping sending packet fragments.

EPSS

Процентиль: 37%
0.00158
Низкий

7.5 High

CVSS3

Дефекты

CWE-401
CWE-401