PT-2026-46314 · Undefined · Undefined

Published

2026-06-04

·

Updated

2026-06-04

·

CVE-2026-36499

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
A missing upper-bound check in the udpif set threads() function of Open vSwitch v3.6.90 allows an attacker with OVSDB write access to request an excessive number of handler or revalidation threads. This can cause a denial of service (DoS) via resource exhaustion.

Exploit

Fix

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

CVE-2026-36499

Affected Products

Undefined