In lib/ofp-util.c in Open vSwitch (OvS) before 2.8.1, there are multiple memory leaks while parsing malformed OpenFlow group mod messages. NOTE: the vendor disputes the relevance of this report, stating "it can only be triggered by an OpenFlow controller, but OpenFlow controllers have much more direct and powerful ways to force Open vSwitch to allocate memory, such as by inserting flows into the flow table."
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-10-01T20:00:00
Updated: 2024-08-05T19:42:22.401Z
Reserved: 2017-10-01T00:00:00
Link: CVE-2017-14970
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2017-10-02T01:29:00.517
Modified: 2019-10-03T00:03:26.223
Link: CVE-2017-14970
Redhat