A flaw was found in Open Virtual Network where the service monitor MAC does not properly rate limit. This issue could allow an attacker to cause a denial of service, including on deployments with CoPP enabled and properly configured.
CVSS Details
- CVSS 3.1 Base Score: 5.3
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade ovn | Jul 30, 2024 | Oct 4, 2023 |
| Redhat Openshift | — | Upgrade ovn23.09Upgrade ovn22.12 | Nov 1, 2023 | Jun 7, 2023 |
| Suse | — | Upgrade openvswitch3-docUpgrade ovn3-centralUpgrade ovn3-vtepUpgrade ovn3-develUpgrade openvswitch3-vtepUpgrade openvswitch3-pkiUpgrade ovn3-hostUpgrade ovn3-dockerUpgrade openvswitch3-testUpgrade ovn3-docUpgrade openvswitch3-ipsecUpgrade openvswitch3Upgrade python3-ovs3Upgrade openvswitch3-develUpgrade libopenvswitch-3_1-0Upgrade ovn3Upgrade libovn-23_03-0 | Sep 21, 2023 | Sep 20, 2023 |
| Ubuntu | — | Upgrade ovn | Nov 19, 2024 | Oct 4, 2023 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub