Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Openvswitch HIGH 7.5
CVE-2024-22563

openvswitch 2.17.8 was discovered to contain a memory leak via the function xmalloc__ in openvswitch-2.17.8/lib/util.c.

No fix yet
Fix from $1,950 2024-01-19
Openvswitch MEDIUM 5.8
CVE-2019-25076

The TSS (Tuple Space Search) algorithm in Open vSwitch 2.x through 2.17.2 and 3.0.0 allows remote attackers to cause a denial of service (delays of l…

Fix: after 2.17.2
Fix from $1,600 2022-09-08
Openvswitch MEDIUM 5.5
CVE-2021-36980

Open vSwitch (aka openvswitch) 2.11.0 through 2.15.0 has a use-after-free in decode_NXAST_RAW_ENCAP (called from ofpact_decode and ofpacts_decode) du…

Fix: after 2.15.0
Fix from $1,600 2021-07-20
Openvswitch MEDIUM 5.9
CVE-2017-14970

In lib/ofp-util.c in Open vSwitch (OvS) before 2.8.1, there are multiple memory leaks while parsing malformed OpenFlow group mod messages. NOTE: the …

Fix: after 2.8.0
Fix from $1,600 2017-10-02
Openvswitch CRITICAL 9.8
CVE-2017-9264

In lib/conntrack.c in the firewall implementation in Open vSwitch (OvS) 2.6.1, there is a buffer over-read while parsing malformed TCP, UDP, and IPv6…

Patch available
Fix from $2,300 2017-05-29
Openvswitch CRITICAL 9.8
CVE-2017-9265

In Open vSwitch (OvS) v2.7.0, there is a buffer over-read while parsing the group mod OpenFlow message sent from the controller in `lib/ofp-util.c` i…

Patch available
Fix from $2,300 2017-05-29
Openvswitch HIGH 8.8
CVE-2016-10377

In Open vSwitch (OvS) 2.5.0, a malformed IP packet can cause the switch to read past the end of the packet buffer due to an unsigned integer underflo…

Patch available
Fix from $1,950 2017-05-29
Openvswitch MEDIUM 6.5
CVE-2017-9263

In Open vSwitch (OvS) 2.7.0, while parsing an OpenFlow role status message, there is a call to the abort() function for undefined role status reasons…

Patch available
Fix from $1,600 2017-05-29