Aller au contenu

Fiche vulnérabilité

CVE-2023-1668 : faille élevée openvswitch (CVSS 8.2)

Description

A flaw was found in openvswitch (OVS). When processing an IP packet with protocol 0, OVS will install the datapath flow without the action modifying the IP header. This issue results (for both kernel and userspace datapath) in installing a datapath flow matching all IP protocols (nw_proto is wildcarded) for this flow, but with an incorrect action, possibly causing incorrect handling of other IP packets with a != 0 IP protocol that matches this dp flow.

En bref

Sévérité
Élevée (CVSS 8.2)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H
Exploitation active
Non signalée par la CISA
Publication
10 avr. 2023
Dernière mise à jour
23 avr. 2025

Produits concernés

  • openvswitch

Références

Rechercher une autre vulnérabilité dans la base CVE