Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-36499

Опубликовано: 04 июн. 2026
Источник: redhat
CVSS3: 4.4
EPSS Низкий

Описание

A missing upper-bound check in the udpif_set_threads() function of Open vSwitch v3.6.90 allows an attacker with OVSDB write access to request an excessive number of handler or revalidation threads. This can cause a denial of service (DoS) via resource exhaustion.

A flaw was found in Open vSwitch. A missing upper-bound check in udpif_set_threads() allows an attacker with OVSDB write access to request an excessive number of handler or revalidation threads, causing resource exhaustion and denial of service. Reported against Open vSwitch v3.6.90; affects deployments where OVSDB is writable by untrusted parties.

Отчет

Open vSwitch is vulnerable to denial of service via resource exhaustion in udpif_set_threads() due to a missing upper-bound check on thread counts. An attacker with high privileges (OVSDB write access) can configure excessive handler or revalidation threads to exhaust system resources. CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H (4.4). Affects FDP, OpenShift OVS RPMs, RHEL-7 ELS, and Fedora openvswitch packages.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Fast Datapath for RHEL 10openvswitch3.5Fix deferred
Fast Datapath for RHEL 10openvswitch3.6Fix deferred
Fast Datapath for RHEL 7openvswitchFix deferred
Fast Datapath for RHEL 7openvswitch2.10Fix deferred
Fast Datapath for RHEL 7openvswitch2.11Fix deferred
Fast Datapath for RHEL 7openvswitch2.12Fix deferred
Fast Datapath for RHEL 7openvswitch2.13Fix deferred
Fast Datapath for RHEL 8openvswitch2.11Fix deferred
Fast Datapath for RHEL 8openvswitch2.12Fix deferred
Fast Datapath for RHEL 8openvswitch2.13Fix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-770
https://bugzilla.redhat.com/show_bug.cgi?id=2484881openvswitch: Open vSwitch: Denial of service via resource exhaustion due to missing upper-bound check

EPSS

Процентиль: 25%
0.00328
Низкий

4.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
2 месяца назад

A missing upper-bound check in the udpif_set_threads() function of Open vSwitch v3.6.90 allows an attacker with OVSDB write access to request an excessive number of handler or revalidation threads. This can cause a denial of service (DoS) via resource exhaustion.

CVSS3: 6.5
nvd
2 месяца назад

A missing upper-bound check in the udpif_set_threads() function of Open vSwitch v3.6.90 allows an attacker with OVSDB write access to request an excessive number of handler or revalidation threads. This can cause a denial of service (DoS) via resource exhaustion.

CVSS3: 6.5
debian
2 месяца назад

A missing upper-bound check in the udpif_set_threads() function of Ope ...

CVSS3: 6.5
github
2 месяца назад

A missing upper-bound check in the udpif_set_threads() function of Open vSwitch v3.6.90 allows an attacker with OVSDB write access to request an excessive number of handler or revalidation threads. This can cause a denial of service (DoS) via resource exhaustion.

EPSS

Процентиль: 25%
0.00328
Низкий

4.4 Medium

CVSS3