In Open vSwitch (OvS) 2.5.0, a malformed IP packet can cause the switch to read past the end of the packet buffer due to an unsigned integer underflow in `lib/flow.c` in the function `miniflow_extract`, permitting remote bypass of the access control list enforced by the switch.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-05-29T03:52:00Z
Updated: 2024-09-16T18:39:28.136Z
Reserved: 2017-05-28T00:00:00Z
Link: CVE-2016-10377
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2017-05-29T04:29:00.243
Modified: 2017-06-08T00:48:55.400
Link: CVE-2016-10377
Redhat