Vulnerability CVE-2018-17204


Published: 2018-09-19

Description:
An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6, affecting parse_group_prop_ntr_selection_method in lib/ofp-util.c. When decoding a group mod, it validates the group type and command after the whole group mod has been decoded. The OF1.5 decoder, however, tries to use the type and command earlier, when it might still be invalid. This causes an assertion failure (via OVS_NOT_REACHED). ovs-vswitchd does not enable support for OpenFlow 1.5 by default.

Type:

CWE-617

(Reachable Assertion)

CVSS2 => (AV:N/AC:L/Au:S/C:N/I:N/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
4/10
2.9/10
8/10
Exploit range
Attack complexity
Authentication
Remote
Low
Single time
Confidentiality impact
Integrity impact
Availability impact
None
None
Partial
Affected software
Redhat -> Openstack 
Redhat -> Virtualization 
Openvswitch -> Openvswitch 
Canonical -> Ubuntu linux 

 References:
https://access.redhat.com/errata/RHSA-2018:3500
https://access.redhat.com/errata/RHSA-2019:0053
https://access.redhat.com/errata/RHSA-2019:0081
https://github.com/openvswitch/ovs/commit/4af6da3b275b764b1afe194df6499b33d2bf4cde
https://usn.ubuntu.com/3873-1/

Copyright 2024, cxsecurity.com

 

Back to Top