PT-2026-29690 · Unknown · Openvswitch
Seiji Sakurai
·
Published
2026-04-01
·
Updated
2026-05-05
·
CVE-2026-34956
CVSS v3.1
5.9
Medium
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Open vSwitch (affected versions not specified)
Description
An issue exists in Open vSwitch related to invalid memory access within the conntrack FTP algorithm. Specifically, crafted FTP payloads can trigger invalid memory accesses, potentially leading to a denial of service and possible remote code execution. This impacts the userspace implementation of conntrack.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
RCE
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Openvswitch