In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Mend
Published: 2022-09-28T09:30:12.924276Z
Updated: 2024-09-16T22:02:36.612Z
Reserved: 2022-05-31T00:00:00
Link: CVE-2022-32166
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-09-28T10:15:09.560
Modified: 2023-11-07T03:47:44.110
Link: CVE-2022-32166
Redhat