A flaw was found in multiple versions of OpenvSwitch. Specially crafted LLDP packets can cause memory to be lost when allocating data to handle specific optional TLVs, potentially causing a denial of service. The highest threat from this vulnerability is to system availability.
{
"unresolved_ranges": [
{
"extracted_events": [
{
"fixed": "17"
}
],
"source": "CPE_RANGE",
"vendor_product": "siemens:simatic_hmi_unified_comfort_panels_firmware",
"cpes": [
"cpe:2.3:o:siemens:simatic_hmi_unified_comfort_panels_firmware:*:*:*:*:*:*:*:*"
]
},
{
"extracted_events": [
{
"fixed": "2.0.1"
}
],
"vendor_product": "siemens:sinumerik_one_firmware",
"cpes": [
"cpe:2.3:o:siemens:sinumerik_one_firmware:*:*:*:*:*:*:*:*"
],
"source": "CPE_RANGE"
},
{
"extracted_events": [
{
"fixed": "2.2"
}
],
"source": "CPE_RANGE",
"vendor_product": "siemens:tim_1531_irc_firmware",
"cpes": [
"cpe:2.3:o:siemens:tim_1531_irc_firmware:*:*:*:*:*:*:*:*"
]
},
{
"extracted_events": [
{
"last_affected": "33"
}
],
"vendor_product": "fedoraproject:fedora",
"cpes": [
"cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:*"
],
"source": "CPE_STRING"
},
{
"extracted_events": [
{
"last_affected": "7.0"
},
{
"last_affected": "8.0"
}
],
"source": "CPE_STRING",
"vendor_product": "redhat:enterprise_linux",
"cpes": [
"cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*",
"cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*"
]
},
{
"extracted_events": [
{
"last_affected": "4.0"
}
],
"source": "CPE_STRING",
"vendor_product": "redhat:openshift_container_platform",
"cpes": [
"cpe:2.3:a:redhat:openshift_container_platform:4.0:*:*:*:*:*:*:*"
]
},
{
"extracted_events": [
{
"last_affected": "10"
},
{
"last_affected": "13"
}
],
"source": "CPE_STRING",
"vendor_product": "redhat:openstack",
"cpes": [
"cpe:2.3:a:redhat:openstack:10:*:*:*:*:*:*:*",
"cpe:2.3:a:redhat:openstack:13:*:*:*:*:*:*:*"
]
},
{
"extracted_events": [
{
"last_affected": "4.0"
}
],
"source": "CPE_STRING",
"vendor_product": "redhat:virtualization",
"cpes": [
"cpe:2.3:a:redhat:virtualization:4.0:*:*:*:*:*:*:*"
]
}
]
}{
"extracted_events": [
{
"introduced": "2.6.0"
},
{
"fixed": "2.6.9"
},
{
"introduced": "2.7.0"
},
{
"fixed": "2.7.12"
},
{
"introduced": "2.8.0"
},
{
"fixed": "2.8.10"
},
{
"introduced": "2.9.0"
},
{
"fixed": "2.9.8"
},
{
"introduced": "2.10.0"
},
{
"fixed": "2.10.6"
},
{
"introduced": "2.11.0"
},
{
"fixed": "2.11.5"
},
{
"introduced": "2.12.0"
},
{
"fixed": "2.12.2"
},
{
"introduced": "2.13.0"
},
{
"fixed": "2.13.2"
},
{
"introduced": "2.14.0"
},
{
"fixed": "2.14.1"
}
],
"cpe": "cpe:2.3:a:openvswitch:openvswitch:*:*:*:*:*:*:*:*",
"source": "CPE_RANGE"
}