cbcvebase.
CVE-2026-34956
published 2026-05-05

CVE-2026-34956: A flaw was found in Open vSwitch. When Open vSwitch is configured with a conntrack flow using FTP helpers over the userspace datapath, a remote attacker can…

medium5.9CVSS 3.1
AVNACHPRNUINSUCNINAH
A flaw was found in Open vSwitch. When Open vSwitch is configured with a conntrack flow using FTP helpers over the userspace datapath, a remote attacker can send a specially crafted FTP stream with an EPASV command exceeding 255 characters. This heap access error can lead to a crash, resulting in a Denial of Service (DoS) for the affected system.

Affected

7 ranges
VendorProductVersion rangeFixed in
debianopenvswitch< openvswitch 3.7.1-1 (forky)openvswitch 3.7.1-1 (forky)
openvswitchopenvswitch
rhosp-rhel8openstack-neutron-openvswitch-agent
rhosp-rhel9openstack-neutron-openvswitch-agent
rhosp13openstack-neutron-openvswitch-agent
rhosp13openstack-openvswitch-base
rhosp13openstack-ovn-base