A flaw was found in Open vSwitch where multiple versions are vulnerable to crafted Geneve packets, which may result in a denial of service and invalid memory accesses. Triggering this issue requires that hardware offloading via the netlink path is enabled.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-5640-1 | openvswitch security update |
EUVD |
EUVD-2023-44591 | A flaw was found in Open vSwitch where multiple versions are vulnerable to crafted Geneve packets, which may result in a denial of service and invalid memory accesses. Triggering this issue requires that hardware offloading via the netlink path is enabled. |
Ubuntu USN |
USN-6690-1 | Open vSwitch vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 16 May 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Fedoraproject
Fedoraproject fedora Openvswitch Openvswitch openvswitch |
|
| CPEs | cpe:2.3:a:openvswitch:openvswitch:*:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:* |
|
| Vendors & Products |
Fedoraproject
Fedoraproject fedora Openvswitch Openvswitch openvswitch |
Thu, 13 Feb 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2025-02-13T17:03:14.623Z
Reserved: 2023-07-26T23:16:24.169Z
Link: CVE-2023-3966
Updated: 2024-08-02T07:08:50.792Z
Status : Analyzed
Published: 2024-02-22T13:15:07.770
Modified: 2025-05-16T14:17:01.290
Link: CVE-2023-3966
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN