A flaw was found in Open vSwitch that allows ICMPv6 Neighbor Advertisement packets between virtual machines to bypass OpenFlow rules. This issue may allow a local attacker to create specially crafted packets with a modified or spoofed target IP address field that can redirect ICMPv6 traffic to arbitrary IP addresses.
CVSS Details
- CVSS 3.1 Base Score: 7.1
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade openvswitch | Aug 22, 2024 | Oct 6, 2023 |
| Debian | — | Upgrade openvswitch | Feb 23, 2024 | Oct 6, 2023 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Oct 6, 2023 |
| Suse | — | Upgrade libopenvswitch-2_14-0Upgrade openvswitch-docUpgrade ovn3-dockerUpgrade ovn3-docUpgrade python3-ovs3Upgrade openvswitch-testUpgrade openvswitch3-develUpgrade ovn3-centralUpgrade ovnUpgrade openvswitch3-testUpgrade openvswitch3Upgrade ovn-develUpgrade openvswitchUpgrade libovn-20_03-0Upgrade ovn3-develUpgrade libopenvswitch-3_1-0Upgrade libopenvswitch-2_13-0Upgrade openvswitch3-vtepUpgrade openvswitch-pkiUpgrade openvswitch3-docUpgrade ovn-centralUpgrade ovn3-vtepUpgrade libovn-23_03-0Upgrade openvswitch-ipsecUpgrade openvswitch-develUpgrade python3-ovsUpgrade libovn-20_06-0Upgrade ovn3-hostUpgrade ovn3Upgrade ovn-dockerUpgrade ovn-docUpgrade ovn-hostUpgrade openvswitch3-ipsecUpgrade openvswitch-vtepUpgrade openvswitch3-pkiUpgrade ovn-vtep | Nov 22, 2023 | Oct 6, 2023 |
| Ubuntu | — | Upgrade python3-openvswitchUpgrade openvswitch-common (Ubuntu Pro)Upgrade openvswitch-common | Nov 27, 2023 | Oct 6, 2023 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jan 20, 2025 | Oct 6, 2023 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub