Open vSwitch (aka openvswitch) 2.11.0 through 2.15.0 has a use-after-free in decodeNXASTRAWENCAP (called from ofpactdecode and ofpactsdecode) during the decoding of a RAWENCAP action.
{ "vanir_signatures": [ { "signature_type": "Function", "target": { "function": "decode_NXAST_RAW_ENCAP", "file": "lib/ofp-actions.c" }, "source": "https://github.com/openvswitch/ovs/commit/65c61b0c23a0d474696d7b1cea522a5016a8aeb3", "id": "CVE-2021-36980-200af1b6", "signature_version": "v1", "deprecated": false, "digest": { "function_hash": "209576733534873843408785465615394916633", "length": 761.0 } }, { "signature_type": "Line", "target": { "file": "lib/ofp-actions.c" }, "source": "https://github.com/openvswitch/ovs/commit/6d67310f4d2524b466b98f05ebccc1add1e8cf35", "id": "CVE-2021-36980-275ba41f", "signature_version": "v1", "deprecated": false, "digest": { "line_hashes": [ "92060819711219569976165408103874414148", "230133176707265485790101955749202792602", "125678146867983290637383644987280043108", "160963822987075192410460993497950816861", "75627123629655397597708468586468840578", "203694621910049404690690516157255942209", "195849225705113354180812045969896413298", "208620529668483093776628092577962602440" ], "threshold": 0.9 } }, { "signature_type": "Line", "target": { "file": "lib/ofp-actions.c" }, "source": "https://github.com/openvswitch/ovs/commit/9926637a80d0d243dbf9c49761046895e9d1a8e2", "id": "CVE-2021-36980-30cd9a35", "signature_version": "v1", "deprecated": false, "digest": { "line_hashes": [ "92060819711219569976165408103874414148", "230133176707265485790101955749202792602", "125678146867983290637383644987280043108", "160963822987075192410460993497950816861", "75627123629655397597708468586468840578", "203694621910049404690690516157255942209", "195849225705113354180812045969896413298", "208620529668483093776628092577962602440" ], "threshold": 0.9 } }, { "signature_type": "Function", "target": { "function": "decode_NXAST_RAW_ENCAP", "file": "lib/ofp-actions.c" }, "source": "https://github.com/openvswitch/ovs/commit/6d67310f4d2524b466b98f05ebccc1add1e8cf35", "id": "CVE-2021-36980-415b3027", "signature_version": "v1", "deprecated": false, "digest": { "function_hash": "209576733534873843408785465615394916633", "length": 761.0 } }, { "signature_type": "Line", "target": { "file": "lib/ofp-actions.c" }, "source": "https://github.com/openvswitch/ovs/commit/8ce8dc34b5f73b30ce0c1869af9947013c3c6575", "id": "CVE-2021-36980-4400f99d", "signature_version": "v1", "deprecated": false, "digest": { "line_hashes": [ "92060819711219569976165408103874414148", "230133176707265485790101955749202792602", "125678146867983290637383644987280043108", "160963822987075192410460993497950816861", "75627123629655397597708468586468840578", "203694621910049404690690516157255942209", "195849225705113354180812045969896413298", "208620529668483093776628092577962602440" ], "threshold": 0.9 } }, { "signature_type": "Line", "target": { "file": "lib/ofp-actions.c" }, "source": "https://github.com/openvswitch/ovs/commit/38744b1bcb022c611712527f039722115300f58f", "id": "CVE-2021-36980-58985c2c", "signature_version": "v1", "deprecated": false, "digest": { "line_hashes": [ "92060819711219569976165408103874414148", "230133176707265485790101955749202792602", "125678146867983290637383644987280043108", "160963822987075192410460993497950816861", "75627123629655397597708468586468840578", "203694621910049404690690516157255942209", "195849225705113354180812045969896413298", "208620529668483093776628092577962602440" ], "threshold": 0.9 } }, { "signature_type": "Line", "target": { "file": "lib/ofp-actions.c" }, "source": "https://github.com/openvswitch/ovs/commit/77cccc74deede443e8b9102299efc869a52b65b2", "id": "CVE-2021-36980-5c589e53", "signature_version": "v1", "deprecated": false, "digest": { "line_hashes": [ "92060819711219569976165408103874414148", "230133176707265485790101955749202792602", "125678146867983290637383644987280043108", "160963822987075192410460993497950816861", "75627123629655397597708468586468840578", "203694621910049404690690516157255942209", "195849225705113354180812045969896413298", "208620529668483093776628092577962602440" ], "threshold": 0.9 } }, { "signature_type": "Line", "target": { "file": "lib/ofp-actions.c" }, "source": "https://github.com/openvswitch/ovs/commit/65c61b0c23a0d474696d7b1cea522a5016a8aeb3", "id": "CVE-2021-36980-880e5a8e", "signature_version": "v1", "deprecated": false, "digest": { "line_hashes": [ "92060819711219569976165408103874414148", "230133176707265485790101955749202792602", "125678146867983290637383644987280043108", "160963822987075192410460993497950816861", "75627123629655397597708468586468840578", "203694621910049404690690516157255942209", "195849225705113354180812045969896413298", "208620529668483093776628092577962602440" ], "threshold": 0.9 } }, { "signature_type": "Function", "target": { "function": "decode_NXAST_RAW_ENCAP", "file": "lib/ofp-actions.c" }, "source": "https://github.com/openvswitch/ovs/commit/38744b1bcb022c611712527f039722115300f58f", "id": "CVE-2021-36980-8fa1a3c4", "signature_version": "v1", "deprecated": false, "digest": { "function_hash": "209576733534873843408785465615394916633", "length": 761.0 } }, { "signature_type": "Function", "target": { "function": "decode_NXAST_RAW_ENCAP", "file": "lib/ofp-actions.c" }, "source": "https://github.com/openvswitch/ovs/commit/8ce8dc34b5f73b30ce0c1869af9947013c3c6575", "id": "CVE-2021-36980-9195f800", "signature_version": "v1", "deprecated": false, "digest": { "function_hash": "209576733534873843408785465615394916633", "length": 761.0 } }, { "signature_type": "Function", "target": { "function": "decode_NXAST_RAW_ENCAP", "file": "lib/ofp-actions.c" }, "source": "https://github.com/openvswitch/ovs/commit/9926637a80d0d243dbf9c49761046895e9d1a8e2", "id": "CVE-2021-36980-96f56785", "signature_version": "v1", "deprecated": false, "digest": { "function_hash": "209576733534873843408785465615394916633", "length": 761.0 } }, { "signature_type": "Function", "target": { "function": "decode_NXAST_RAW_ENCAP", "file": "lib/ofp-actions.c" }, "source": "https://github.com/openvswitch/ovs/commit/77cccc74deede443e8b9102299efc869a52b65b2", "id": "CVE-2021-36980-f5546977", "signature_version": "v1", "deprecated": false, "digest": { "function_hash": "209576733534873843408785465615394916633", "length": 761.0 } } ] }