cbcvebase.
CVE-2026-34956
published 2026-05-05

CVE-2026-34956: A flaw was found in Open vSwitch. When Open vSwitch is configured with a conntrack flow using FTP helpers over the userspace datapath, a remote attacker can…

PriorityP432medium5.9CVSS 3.1
AVNACHPRNUINSUCNINAH
EPSS
0.40%
33.1th percentile
A flaw was found in Open vSwitch. When Open vSwitch is configured with a conntrack flow using FTP helpers over the userspace datapath, a remote attacker can send a specially crafted FTP stream with an EPASV command exceeding 255 characters. This heap access error can lead to a crash, resulting in a Denial of Service (DoS) for the affected system.

Affected

7 ranges
VendorProductVersion rangeFixed in
debianopenvswitch< openvswitch 3.7.1-1 (forky)openvswitch 3.7.1-1 (forky)
openvswitchopenvswitch
rhosp-rhel8openstack-neutron-openvswitch-agent
rhosp-rhel9openstack-neutron-openvswitch-agent
rhosp13openstack-neutron-openvswitch-agent
rhosp13openstack-openvswitch-base
rhosp13openstack-ovn-base

CVSS provenance

nvdv3.15.9MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
vendor_redhat5.9MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.