• CVE-2023-1668

发布时间: 2023年4月21日

修改时间: 2024年10月31日

概要

A flaw was found in openvswitch (OVS). When processing an IP packet with protocol 0, OVS will install the datapath flow without the action modifying the IP header. This issue results (for both kernel and userspace datapath) in installing a datapath flow matching all IP protocols (nw_proto is wildcarded) for this flow, but with an incorrect action, possibly causing incorrect handling of other IP packets with a != 0 IP protocol that matches this dp flow.

CVSS v3 指标

NVD openEuler
Confidentiality Low Low
Attack Vector Network Network
CVSS评分 8.2 7.1
Attack Complexity Low Low
Privileges Required None Low
Scope Unchanged Unchanged
Integrity None None
User Interaction None None
Availability High High

安全公告

公告名 概要 发布时间
KylinSec-SA-2023-1317 openvswitch security update 2023年4月21日

影响产品

产品 状态
KY3.4-4A openvswitch Fixed
KY3.4-5A openvswitch Fixed
KY3.5.1 openvswitch Fixed
KY3.5.2 openvswitch Fixed