Vulnerabilities > Openvswitch > High

DATE CVE VULNERABILITY TITLE RISK
2024-01-19 CVE-2024-22563 Memory Leak vulnerability in Openvswitch 2.17.8
openvswitch 2.17.8 was discovered to contain a memory leak via the function xmalloc__ in openvswitch-2.17.8/lib/util.c.
network
low complexity
openvswitch CWE-401
7.5
2022-08-23 CVE-2021-3905 Memory Leak vulnerability in multiple products
A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing.
7.5
2021-03-18 CVE-2020-27827 A flaw was found in multiple versions of OpenvSwitch. 7.5
2021-02-11 CVE-2020-35498 A vulnerability was found in openvswitch.
network
low complexity
openvswitch debian fedoraproject
7.5
2018-09-19 CVE-2018-17205 Reachable Assertion vulnerability in multiple products
An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6, affecting ofproto_rule_insert__ in ofproto/ofproto.c.
network
low complexity
openvswitch redhat canonical CWE-617
7.5
2017-05-29 CVE-2016-10377 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Openvswitch 2.5.0
In Open vSwitch (OvS) 2.5.0, a malformed IP packet can cause the switch to read past the end of the packet buffer due to an unsigned integer underflow in `lib/flow.c` in the function `miniflow_extract`, permitting remote bypass of the access control list enforced by the switch.
low complexity
openvswitch CWE-119
8.8