First published: Thu Mar 17 2016(Updated: )
Buffer overflow in lib/flow.c in ovs-vswitchd in Open vSwitch 2.2.x and 2.3.x before 2.3.3 and 2.4.x before 2.4.1 allows remote attackers to execute arbitrary code via crafted MPLS packets, as demonstrated by a long string in an ovs-appctl command.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/openvswitch | <2.5.0 | 2.5.0 |
Openvswitch Openvswitch | =2.2.0 | |
Openvswitch Openvswitch | =2.3.0 | |
Openvswitch Openvswitch | =2.3.1 | |
Openvswitch Openvswitch | =2.3.2 | |
Openvswitch Openvswitch | =2.4.0 | |
Redhat Openshift | =3.1 | |
debian/openvswitch | 2.15.0+ds1-2+deb11u5 3.1.0-2+deb12u1 3.3.1-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.