CVE-2022-32166
published 2022-09-28CVE-2022-32166: In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an…
PriorityP426medium6.1CVSS 3.1
AVLACLPRLUINSUCLINAH
EPSS
0.55%
42.4th percentile
In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cloudbase | open_vswitch | 0.90.0 – 2.5.0 | — |
| debian | debian_linux | — | — |
| debian | openvswitch | < openvswitch 2.13.0+dfsg1-1 (bookworm) | openvswitch 2.13.0+dfsg1-1 (bookworm) |
| openvswitch | openvswitch | >= 0 < 2.13.0+dfsg1-1 | 2.13.0+dfsg1-1 |
| openvswitch | openvswitch | >= 0 < 2.13.0+dfsg1-1 | 2.13.0+dfsg1-1 |
| openvswitch | openvswitch | >= 0 < 2.13.0+dfsg1-1 | 2.13.0+dfsg1-1 |
| openvswitch | openvswitch | >= 0 < 2.13.0+dfsg1-1 | 2.13.0+dfsg1-1 |
| ovs | ovs | unspecified – v2.5.0 | — |
| ovs | ovs | >= v0.90.0 < unspecified | unspecified |
CVSS provenance
nvdv3.16.1MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H
osv6.1MEDIUM
vendor_debian6.1MEDIUM
vendor_redhat6.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Open vSwitch vulnerability
vendor_ubuntu·2022-10-25
CVE-2022-32166 Open vSwitch vulnerability
Title: Open vSwitch vulnerability
Summary: Open vSwitch could be made to crash or run programs if it received
specially crafted network traffic.
USN-5698-1 fixed a vulnerability in Open. This update provides
the corresponding update for Ubuntu 16.04 ESM.
Original advisory details:
It was discovered that Open vSwitch incorrectly handled comparison of
certain minimasks. A remote attacker could use this issue to cause Open
vSwitch to crash, resulting in a denial of service, or possibly execute
arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
Open vSwitch vulnerability
vendor_ubuntu·2022-10-25
CVE-2022-32166 Open vSwitch vulnerability
Title: Open vSwitch vulnerability
Summary: Open vSwitch could be made to crash or run programs if it received
specially crafted network traffic.
It was discovered that Open vSwitch incorrectly handled comparison of
certain minimasks. A remote attacker could use this issue to cause Open
vSwitch to crash, resulting in a denial of service, or possibly execute
arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
openvswitch: Heap buffer over-read in flow.c
vendor_redhat·2022-09-28·CVSS 6.1
CVE-2022-32166 [MEDIUM] CWE-126 openvswitch: Heap buffer over-read in flow.c
openvswitch: Heap buffer over-read in flow.c
In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
A flaw was found in OpenVSwitch. Versions 0.90.0 through 2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and remote execution.
Package: openvswitch (Fast Datapath for RHEL 7) - Not affected
Package: openvswitch2.10 (Fast Datapath for RHEL 7) - Not affected
Package: openvswi
Debian
CVE-2022-32166: openvswitch - In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read i...
vendor_debian·2022·CVSS 6.1
CVE-2022-32166 [MEDIUM] CVE-2022-32166: openvswitch - In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read i...
In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
Scope: local
bookworm: resolved (fixed in 2.13.0+dfsg1-1)
bullseye: resolved (fixed in 2.13.0+dfsg1-1)
forky: resolved (fixed in 2.13.0+dfsg1-1)
sid: resolved (fixed in 2.13.0+dfsg1-1)
trixie: resolved (fixed in 2.13.0+dfsg1-1)
GHSA
GHSA-3q99-mmr6-6chg: In ovs versions v0
ghsa_unreviewed·2022-09-29
CVE-2022-32166 [HIGH] CWE-125 GHSA-3q99-mmr6-6chg: In ovs versions v0
In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
OSV
CVE-2022-32166: In ovs versions v0
osv·2022-09-28·CVSS 6.1
CVE-2022-32166 [MEDIUM] CVE-2022-32166: In ovs versions v0
In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minimasks” function could lead access to an unmapped region of memory. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
No detection rules found.
No public exploits indexed.
https://github.com/cloudbase/ovs/commit/2ed6505555cdcb46f9b1f0329d1491b75290fc73https://lists.debian.org/debian-lts-announce/2022/10/msg00036.htmlhttps://www.mend.io/vulnerability-database/CVE-2022-32166https://github.com/cloudbase/ovs/commit/2ed6505555cdcb46f9b1f0329d1491b75290fc73https://lists.debian.org/debian-lts-announce/2022/10/msg00036.htmlhttps://www.mend.io/vulnerability-database/CVE-2022-32166
2022-09-28
Published