CyberSec.Space Logo
CVEブラウザに戻る

CVE-2020-35498

HIGH
7.5
CVSS Severity Score
EPSS Score0.1380%
EPSS Percentile19.23th
Published2021年2月11日
Last Modified2025年4月23日

Vulnerability Description

A vulnerability was found in openvswitch. A limitation in the implementation of userspace packet parsing can allow a malicious user to send a specially crafted packet causing the resulting megaflow in the kernel to be too wide, potentially causing a denial of service. The highest threat from this vulnerability is to system availability.

Affected Platforms (CPE)

📦
Openvswitch

Openvswitch

>= 2.5.0 and < 2.5.12
📦
Openvswitch

Openvswitch

>= 2.6.0 and < 2.6.10
📦
Openvswitch

Openvswitch

>= 2.7.0 and < 2.7.13
📦
Openvswitch

Openvswitch

>= 2.8.0 and < 2.8.11
📦
Openvswitch

Openvswitch

>= 2.9.0 and < 2.9.9
📦
Openvswitch

Openvswitch

>= 2.10.0 and < 2.10.7
📦
Openvswitch

Openvswitch

>= 2.11.0 and < 2.11.6
📦
Openvswitch

Openvswitch

>= 2.12.0 and < 2.12.3
📦
Openvswitch

Openvswitch

>= 2.13.0 and < 2.13.3
📦
Openvswitch

Openvswitch

>= 2.14.0 and < 2.14.2
💻
Debian

Debian Linux

= 9.0
💻
Debian

Debian Linux

= 10.0
💻
Fedoraproject

Fedora

= 33

References & Advisories

関連する脆弱性情報