Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Joakim Hindersson

#32376of 53,633
7.8Total CVSS
Vulnerabilities · 1
PT-2021-2225
7.8
2021-02-10
Unknown · Openvswitch · CVE-2020-35498
**Name of the Vulnerable Software and Affected Versions** openvswitch (affected versions not specified) **Description** A limitation in the implementation of userspace packet parsing can allow a malicious user to send a specially crafted packet, causing the resulting megaflow in the kernel to be too wide, potentially leading to a denial of service. The highest threat from this issue is to system availability. It is related to an uncontrolled resource consumption in the Open vSwitch software, which can be exploited by a remote attacker using a specially crafted packet. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.