Back to bug 2130577

Who When What Removed Added
Pedro Sampaio 2022-09-28 13:48:04 UTC Depends On 2130578
Pedro Sampaio 2022-09-28 13:48:07 UTC Blocks 2130579
Nick Tait 2022-10-01 21:54:25 UTC Priority medium high
Severity medium high
Nick Tait 2022-10-01 21:56:23 UTC CC ctrautma, echaudro, jhsiao, ralongi, rkhan
Anten Skrabec 2022-10-06 14:52:57 UTC Fixed In Version openvswitch 2.5.0
Anten Skrabec 2022-10-06 15:00:48 UTC Doc Text OpenVSwitch versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
Anten Skrabec 2022-10-06 15:01:13 UTC Doc Text OpenVSwitch versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution. OpenVSwitch versions 0.90.0 through 2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
Paige Jung 2022-10-06 16:50:54 UTC Doc Text OpenVSwitch versions 0.90.0 through 2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution. A flaw was found in OpenVSwitch. Versions 0.90.0 through 2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and remote execution.
Sandipan Roy 2022-10-07 04:35:40 UTC Depends On 2132865
Sandro Bonazzola 2022-11-18 15:22:33 UTC CC sbonazzo
zhijianli88 2023-04-24 08:09:33 UTC CC zhijianli88
Red Hat Bugzilla 2023-07-07 08:32:56 UTC Assignee security-response-team nobody

Back to bug 2130577