Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-9214

Опубликовано: 20 мая 2017
Источник: redhat
CVSS3: 7.5

Описание

In Open vSwitch (OvS) 2.7.0, while parsing an OFPT_QUEUE_GET_CONFIG_REPLY type OFP 1.0 message, there is a buffer over-read that is caused by an unsigned integer underflow in the function ofputil_pull_queue_get_config_reply10 in lib/ofp-util.c.

An unsigned integer wrap around that led to a buffer over-read was found when parsing OFPT_QUEUE_GET_CONFIG_REPLY messages in Open vSwitch (OvS). An attacker could use this issue to cause a remote denial of service attack.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux OpenStack Platform 5 (Icehouse)openvswitchWill not fix
Red Hat OpenShift Enterprise 3openvswitchNot affected
Red Hat OpenStack Platform 12 (Pike)openvswitchNot affected
Fast Datapath for Red Hat Enterprise Linux 7openvswitchFixedRHSA-2017:241803.08.2017
Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7openvswitchFixedRHSA-2017:266506.09.2017
Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) for RHEL 7openvswitchFixedRHSA-2017:269812.09.2017
Red Hat OpenStack Platform 10.0 (Newton)openvswitchFixedRHSA-2017:264806.09.2017
Red Hat OpenStack Platform 11.0 (Ocata)openvswitchFixedRHSA-2017:272713.09.2017
Red Hat OpenStack Platform 8.0 (Liberty)openvswitchFixedRHSA-2017:269212.09.2017
Red Hat OpenStack Platform 9.0 (Mitaka)openvswitchFixedRHSA-2017:255330.08.2017

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=1456795openvswitch: Integer underflow in the ofputil_pull_queue_get_config_reply10 function

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 8 лет назад

In Open vSwitch (OvS) 2.7.0, while parsing an OFPT_QUEUE_GET_CONFIG_REPLY type OFP 1.0 message, there is a buffer over-read that is caused by an unsigned integer underflow in the function `ofputil_pull_queue_get_config_reply10` in `lib/ofp-util.c`.

CVSS3: 9.8
nvd
больше 8 лет назад

In Open vSwitch (OvS) 2.7.0, while parsing an OFPT_QUEUE_GET_CONFIG_REPLY type OFP 1.0 message, there is a buffer over-read that is caused by an unsigned integer underflow in the function `ofputil_pull_queue_get_config_reply10` in `lib/ofp-util.c`.

CVSS3: 9.8
debian
больше 8 лет назад

In Open vSwitch (OvS) 2.7.0, while parsing an OFPT_QUEUE_GET_CONFIG_RE ...

CVSS3: 9.8
github
больше 3 лет назад

In Open vSwitch (OvS) 2.7.0, while parsing an OFPT_QUEUE_GET_CONFIG_REPLY type OFP 1.0 message, there is a buffer over-read that is caused by an unsigned integer underflow in the function `ofputil_pull_queue_get_config_reply10` in `lib/ofp-util.c`.

suse-cvrf
около 8 лет назад

Security update for openvswitch

7.5 High

CVSS3