CVE-2016-10377

Severity
8.8HIGH
EPSS
0.2%
top 52.54%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 29
Latest updateMay 17

Description

In Open vSwitch (OvS) 2.5.0, a malformed IP packet can cause the switch to read past the end of the packet buffer due to an unsigned integer underflow in `lib/flow.c` in the function `miniflow_extract`, permitting remote bypass of the access control list enforced by the switch.

CVSS vector

CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages2 packages

Debianopenvswitch< 2.6.1+git20161123-1+3

Patches

🔴Vulnerability Details

3
GHSA
GHSA-w6j4-9556-fjfj: In Open vSwitch (OvS) 22022-05-17
CVEList
CVE-2016-10377: In Open vSwitch (OvS) 22017-05-29
OSV
CVE-2016-10377: In Open vSwitch (OvS) 22017-05-29

📋Vendor Advisories

2
Red Hat
openvswitch: Unsigned integer overflow in the miniflow_extract function2016-07-22
Debian
CVE-2016-10377: openvswitch - In Open vSwitch (OvS) 2.5.0, a malformed IP packet can cause the switch to read ...2016

💬Community

2
Bugzilla
CVE-2016-10377 openvswitch: Unsigned integer overflow in the miniflow_extract function2017-05-31
Bugzilla
CVE-2016-10377 CVE-2017-9214 CVE-2017-9263 CVE-2017-9264 CVE-2017-9265 openvswitch: various flaws [fedora-all]2017-05-30