CVE-2020-27827: High severity : Siemens SIMATIC HMI Unified Comfort Panels vulnerability
A flaw was found in multiple versions of Open vSwitch. Specially crafted LLDP packets can cause memory to be lost when allocating data to handle specific optional TLVs, potentially causing a denial of service. The highest threat from this vulnerability is to system availability.
Other sources
A flaw was found in multiple versions of OpenvSwitch. Specially crafted LLDP packets can cause memory to be lost when allocating data to handle specific optional TLVs, potentially causing a denial of service. The highest threat from this vulnerability is to system availability.
Multiple versions of Open vSwitch are vulnerable to denial of service attacks in which crafted LLDP packets could cause memory to be lost when allocating data to handle specific optional TLVs. Triggering the vulnerability requires LLDP processing to be enabled for a specific port. Open vSwitch versions before 2.5.x are not vulnerable.
References:
https://mail.openvswitch.org/pipermail/ovs-dev/2021-January/379471.html https://github.com/lldpd/lldpd/commit/a8d3c90feca548fc0656d95b5d278713db86ff61
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/openvswitch2.11to a version that resolves this vulnerability.Fixed in 0:2.11.3-86.el7fd - Upgrade
Upgrade
redhat/openvswitch2.13to a version that resolves this vulnerability.Fixed in 0:2.13.0-81.el7fd - Upgrade
Upgrade
redhat/openvswitchto a version that resolves this vulnerability.Fixed in 0:2.9.9-1.el7fd - Upgrade
Upgrade
redhat/openvswitch2.13to a version that resolves this vulnerability.Fixed in 0:2.13.0-79.5.el8fd - Upgrade
Upgrade
redhat/openvswitch2.11to a version that resolves this vulnerability.Fixed in 0:2.11.3-83.el8fd - Upgrade
Upgrade
redhat/ovn2.11to a version that resolves this vulnerability.Fixed in 0:2.11.1-57.el7fd - Upgrade
Upgrade
redhat/redhat-virtualization-hostto a version that resolves this vulnerability.Fixed in 0:4.3.14-20210322.0.el7_9 - Upgrade
Upgrade
redhat/redhat-virtualization-hostto a version that resolves this vulnerability.Fixed in 0:4.4.4-20210307.0.el8_3 - Upgrade
Upgrade
debian/lldpdto a version that resolves this vulnerability.Fixed in 1.0.3-1+deb10u2Fixed in 1.0.11-1+deb11u2Fixed in 1.0.16-1+deb12u1Fixed in 1.0.17-1 - Upgrade
Upgrade
debian/openvswitchto a version that resolves this vulnerability.Fixed in 2.10.7+ds1-0+deb10u1Fixed in 2.10.7+ds1-0+deb10u4Fixed in 2.15.0+ds1-2+deb11u4Fixed in 3.1.0-2Fixed in 3.2.0-2 - Upgrade
Upgrade
Siemens SIMATIC HMI Unified Comfort Panelsto a version that resolves this vulnerability.Fixed in 17 - Upgrade
Upgrade
Siemens SIMATIC NET CP 1545-1to a version that resolves this vulnerability.Fixed in 1.1 - Upgrade
Upgrade
redhat/lldpdto a version that resolves this vulnerability.Fixed in 1.0.8 - Upgrade
Upgrade
redhat/openvswitchto a version that resolves this vulnerability.Fixed in 2.14.1 - Upgrade
Upgrade
redhat/openvswitchto a version that resolves this vulnerability.Fixed in 2.13.2 - Upgrade
Upgrade
redhat/openvswitchto a version that resolves this vulnerability.Fixed in 2.12.2 - Upgrade
Upgrade
redhat/openvswitchto a version that resolves this vulnerability.Fixed in 2.11.5 - Upgrade
Upgrade
redhat/openvswitchto a version that resolves this vulnerability.Fixed in 2.10.6 - Upgrade
Upgrade
redhat/openvswitchto a version that resolves this vulnerability.Fixed in 2.9.8 - Upgrade
Upgrade
redhat/openvswitchto a version that resolves this vulnerability.Fixed in 2.8.10 - Upgrade
Upgrade
redhat/openvswitchto a version that resolves this vulnerability.Fixed in 2.7.12 - Upgrade
Upgrade
redhat/openvswitchto a version that resolves this vulnerability.Fixed in 2.6.9
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2020-27827?
CVE-2020-27827 has a high severity rating due to its potential to cause denial of service through memory loss.
How do I fix CVE-2020-27827?
To mitigate CVE-2020-27827, upgrade to the fixed versions of OpenvSwitch as specified in the remediation guidance.
Which versions of OpenvSwitch are affected by CVE-2020-27827?
CVE-2020-27827 affects multiple versions of OpenvSwitch, specifically those prior to the specified fixed releases.
What systems are at risk from CVE-2020-27827?
Systems running vulnerable versions of OpenvSwitch are at risk of denial of service due to this vulnerability.
Is CVE-2020-27827 exploitable over the network?
Yes, CVE-2020-27827 can be exploited through specially crafted LLDP packets sent over the network.