https://seclists.org/oss-sec/2024/q1/119: [ADVISORY] CVE-2023-5366: Open vSwitch: OpenFlow match on Neighbor Discovery Target may be ignored
Published Feb 8, 2024
·Updated
Affected Software
1 affected component
Open vSwitch Open vSwitch
Frequently Asked Questions
1
What is the severity of CVE-2023-5366?
CVE-2023-5366 is categorized as a medium-severity vulnerability affecting multiple versions of Open vSwitch.
2
How do I fix CVE-2023-5366?
To remediate CVE-2023-5366, ensure that your Open vSwitch configurations include matching on both Target Address and ICMPv6 Code fields in OpenFlow rules.
3
Which versions of Open vSwitch are affected by CVE-2023-5366?
CVE-2023-5366 affects multiple versions of Open vSwitch that allow OpenFlow rules to improperly match Neighbor Discovery packets.
4
What impact does CVE-2023-5366 have on network security?
CVE-2023-5366 can lead to incorrect packet processing, which may result in denial of service or other unexpected behavior in network communications.
5
Is there a workaround for CVE-2023-5366?
Currently, the recommended solution for CVE-2023-5366 is to update the configurations as there is no known workaround to mitigate the vulnerability without altering OpenFlow rules.