Описание
An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The decode_bundle function inside lib/ofp-actions.c is affected by a buffer over-read issue during BUNDLE action decoding.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 2.9.2-0ubuntu0.18.04.3 |
| cosmic | not-affected | 2.10.0-0ubuntu2 |
| devel | not-affected | 2.10.0-0ubuntu2 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [code not present]] |
| esm-infra/bionic | released | 2.9.2-0ubuntu0.18.04.3 |
| esm-infra/xenial | released | 2.5.5-0ubuntu0.16.04.2 |
| precise/esm | DNE | |
| trusty | not-affected | code not present |
| trusty/esm | DNE | trusty was not-affected [code not present] |
| upstream | needs-triage |
Показывать по
EPSS
4 Medium
CVSS2
4.9 Medium
CVSS3
Связанные уязвимости
An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The decode_bundle function inside lib/ofp-actions.c is affected by a buffer over-read issue during BUNDLE action decoding.
An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The decode_bundle function inside lib/ofp-actions.c is affected by a buffer over-read issue during BUNDLE action decoding.
An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The ...
An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The decode_bundle function inside lib/ofp-actions.c is affected by a buffer over-read issue during BUNDLE action decoding.
Уязвимость функции decode_bundle() программного многоуровневого коммутатора Open vSwitch, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
4 Medium
CVSS2
4.9 Medium
CVSS3