Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-1668

Опубликовано: 10 апр. 2023
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 8.2

Описание

A flaw was found in openvswitch (OVS). When processing an IP packet with protocol 0, OVS will install the datapath flow without the action modifying the IP header. This issue results (for both kernel and userspace datapath) in installing a datapath flow matching all IP protocols (nw_proto is wildcarded) for this flow, but with an incorrect action, possibly causing incorrect handling of other IP packets with a != 0 IP protocol that matches this dp flow.

РелизСтатусПримечание
bionic

released

2.9.8-0ubuntu0.18.04.5
devel

released

3.1.0-1ubuntu1
esm-infra-legacy/xenial

needs-triage

esm-infra/bionic

released

2.9.8-0ubuntu0.18.04.5
esm-infra/focal

released

2.13.8-0ubuntu1.2
esm-infra/xenial

ignored

end of ESM support, was needs-triage
focal

released

2.13.8-0ubuntu1.2
jammy

released

2.17.5-0ubuntu0.22.04.2
kinetic

released

3.0.3-0ubuntu0.22.10.3
lunar

released

3.1.0-1ubuntu1

Показывать по

EPSS

Процентиль: 66%
0.01216
Низкий

8.2 High

CVSS3

Связанные уязвимости

CVSS3: 8.2
redhat
больше 3 лет назад

A flaw was found in openvswitch (OVS). When processing an IP packet with protocol 0, OVS will install the datapath flow without the action modifying the IP header. This issue results (for both kernel and userspace datapath) in installing a datapath flow matching all IP protocols (nw_proto is wildcarded) for this flow, but with an incorrect action, possibly causing incorrect handling of other IP packets with a != 0 IP protocol that matches this dp flow.

CVSS3: 8.2
nvd
больше 3 лет назад

A flaw was found in openvswitch (OVS). When processing an IP packet with protocol 0, OVS will install the datapath flow without the action modifying the IP header. This issue results (for both kernel and userspace datapath) in installing a datapath flow matching all IP protocols (nw_proto is wildcarded) for this flow, but with an incorrect action, possibly causing incorrect handling of other IP packets with a != 0 IP protocol that matches this dp flow.

CVSS3: 8.2
msrc
больше 3 лет назад

A flaw was found in openvswitch (OVS). When processing an IP packet with protocol 0 OVS will install the datapath flow without the action modifying the IP header. This issue results (for both kernel and userspace datapath) in installing a datapath flow matching all IP protocols (nw_proto is wildcarded) for this flow but with an incorrect action possibly causing incorrect handling of other IP packets with a != 0 IP protocol that matches this dp flow.

CVSS3: 8.2
debian
больше 3 лет назад

A flaw was found in openvswitch (OVS). When processing an IP packet wi ...

suse-cvrf
около 3 лет назад

Security update for openvswitch

EPSS

Процентиль: 66%
0.01216
Низкий

8.2 High

CVSS3