CVE-2020-10724: Integer Overflow

Published Apr 28, 2020
·
Updated

A vulnerability was found in DPDK through version 18.11, The vhost crypto library code contains a post message handler (vhostcryptomsgposthandler) which calls vhostcryptocreatesess() which in turn calls transformcipherparam() depending on the operation type. It is transformcipherparam() that handles the payload data. The payload contains a cipher key length and a static VHOSTUSERCRYPTOMAXCIPHERKEYLENGTH (64) byte key buffer. When transformcipherparam() handles the payload data it does not check to see if the buffer length doesn't exceed VHOSTUSERCRYPTOMAXCIPHERKEYLENGTH. This missing check can cause out of bound reads which could trigger a crash or a potential information leak. Also, the vhost crypto library code contains a post message handler (vhostcryptomsgposthandler) which calls vhostcryptocreatesess() which in turn calls transformchainparam() depending on the operation type. It is transformchainparam() that handles the payload data. The payload contains a cipher key length and a static VHOSTUSERCRYPTOMAXCIPHERKEYLENGTH (64) byte key buffer, it also contains a digest length and a static authentication key buffer (size: VHOSTUSERCRYPTOMAXHMACKEYLENGTH(512)) and authentication key buffer length. None of these length values are validated. Which can lead to reading out of bound.

Other sources

A vulnerability was found in DPDK versions 18.11 and above

Microsoft

Affected Software

20 affected componentsFixes available
redhat/openvswitch2.11<0:2.11.0-54.20200327gita4efc59.el7fd
0:2.11.0-54.20200327gita4efc59.el7fd
redhat/openvswitch2.13<0:2.13.0-25.el8fd
0:2.13.0-25.el8fd
redhat/openvswitch2.11<0:2.11.0-54.20200327gita4efc59.el8fd
0:2.11.0-54.20200327gita4efc59.el8fd
redhat/openvswitch2.11<0:2.11.3-77.el7fd
0:2.11.3-77.el7fd
redhat/openvswitch-selinux-extra-policy<0:1.0-17.el7fd
0:1.0-17.el7fd
redhat/ovn2.11<0:2.11.1-57.el7fd
0:2.11.1-57.el7fd
ubuntu/dpdk<18.11.5-0ubuntu0.19.10.2
18.11.5-0ubuntu0.19.10.2
ubuntu/dpdk<19.11.1-0ubuntu1.1
19.11.1-0ubuntu1.1
ubuntu/dpdk<19.11.2, <18.11.8, <20.02.1
19.11.218.11.820.02.1
redhat/dpdk<20.02.1
20.02.1
redhat/dpdk<19.11.2
19.11.2
redhat/dkdk<18.11.8
18.11.8
debian/dpdk
18.11.11-1~deb10u118.11.11-1~deb10u220.11.10-1~deb11u120.11.6-1~deb11u122.11.4-1~deb12u123.11-1
DPDK Data Plane Development Kit<=18.11
Canonical Ubuntu Linux=18.04
Canonical Ubuntu Linux=19.10
Canonical Ubuntu Linux=20.04
Fedoraproject Fedora=32
Microsoft azl3 ceph 18.2.2-8
Microsoft azl3 ceph 18.2.2-1

Event History

May 18, 2020
CVE Published
12:00 AM
May 19, 2020
CVE Published
via MITRE·05:59 PM
Data Sourced
via MITRE·05:59 PM
DescriptionSeverityWeakness
Jan 11, 2024
Data Sourced
via Launchpad·11:35 PM
Description
Sep 3, 2025
Data Sourced
via Microsoft·09:55 PM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·09:55 PM
Affected Software
Updated
via Microsoft·09:55 PM
SeverityAffected Software
Updated
via Microsoft·09:55 PM
Description

Parent advisories

This vulnerability appears in the following advisories.

Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the vulnerability ID for this DPDK vulnerability?

The vulnerability ID for this DPDK vulnerability is CVE-2020-10724.

2

What is the severity of CVE-2020-10724?

The severity of CVE-2020-10724 is medium, with a severity value of 5.1.

3

Which versions of DPDK are affected by this vulnerability?

DPDK versions 18.11 and above are affected by this vulnerability.

4

How can I fix CVE-2020-10724?

To fix CVE-2020-10724, you need to update DPDK to version 20.02.1, 19.11.2, or 18.11.8.

5

Are there any references for CVE-2020-10724?

Yes, you can find references for CVE-2020-10724 at the following links: [link1](https://www.openwall.com/lists/oss-security/2020/05/18/2), [link2](https://bugs.dpdk.org/show_bug.cgi?id=269), [link3](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=1837057).

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203