Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-17206

Опубликовано: 19 сент. 2018
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4
CVSS3: 4.9

Описание

An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The decode_bundle function inside lib/ofp-actions.c is affected by a buffer over-read issue during BUNDLE action decoding.

РелизСтатусПримечание
bionic

released

2.9.2-0ubuntu0.18.04.3
cosmic

not-affected

2.10.0-0ubuntu2
devel

not-affected

2.10.0-0ubuntu2
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [code not present]]
esm-infra/bionic

released

2.9.2-0ubuntu0.18.04.3
esm-infra/xenial

released

2.5.5-0ubuntu0.16.04.2
precise/esm

DNE

trusty

not-affected

code not present
trusty/esm

DNE

trusty was not-affected [code not present]
upstream

needs-triage

Показывать по

EPSS

Процентиль: 84%
0.02077
Низкий

4 Medium

CVSS2

4.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.9
redhat
больше 7 лет назад

An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The decode_bundle function inside lib/ofp-actions.c is affected by a buffer over-read issue during BUNDLE action decoding.

CVSS3: 4.9
nvd
больше 7 лет назад

An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The decode_bundle function inside lib/ofp-actions.c is affected by a buffer over-read issue during BUNDLE action decoding.

CVSS3: 4.9
debian
больше 7 лет назад

An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The ...

CVSS3: 4.9
github
больше 3 лет назад

An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The decode_bundle function inside lib/ofp-actions.c is affected by a buffer over-read issue during BUNDLE action decoding.

CVSS3: 4.9
fstec
больше 7 лет назад

Уязвимость функции decode_bundle() программного многоуровневого коммутатора Open vSwitch, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 84%
0.02077
Низкий

4 Medium

CVSS2

4.9 Medium

CVSS3