Known vulnerabilities in openvswitch (Red Hat package)
Vendor:
Red Hat Inc.
Software:
openvswitch (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:openvswitch_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
15
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
2.3.2-1.git20150730.el7_1
2.9.9-1.el7fdp
2.13.0-25.el8fdp.1
2.9.0-130.el7fdp
2.9.0-124.el7fdp
2.9.0-19.el7fdp
2.6.1-13.git20161206.el7ost
2.4.1-2.git20160727.el7ost
2.5.0-15.git20160727.el7ost
2.7.2-1.git20170719.el7fdp
2.9.0-103.el7
2.9.0-101.el7
2.9.0-56.el7
2.9.0-54.el7
2.4.0-1.el7
2.1.2-2.el7_0
2.0.0-7.el7
2.4.0-2.el7_2
2.9.0-125.el7
2.9.0-124.el7
2.9.0-122.el7
2.9.0-117.el7
2.9.0-114.el7
2.9.0-110.el7
2.9.0-106.el7
2.9.0-104.el7
2.9.0-97.el7
2.9.0-83.el7
2.9.0-70.el7
2.9.0-55.el7
2.9.0-47.el7
2.9.0-19.el7
2.9.0-1.el7
2.1.2-1.el6
2.0.1-2.el6
1.11.0-1.el6
1.9.0-2.el6
1.9.0-1.el6
1.7.1-7.el6
Vulnerabilities (15)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU50603 - Improper input validation CVE-2020-35498 |
CWE-20 | Medium | 2.9.9-1.el7fdp | 10.02.2021 |
SB2021021021 SB2021021218 SB2021021620 and 12 more |
||
| #VU49910 - Missing release of memory after effective lifetime CVE-2020-27827 |
CWE-401 | Medium | 2.9.9-1.el7fdp | 21.01.2021 |
SB2021012119 SB2021012120 SB2021012121 and 22 more |
||
| #VU27999 - Missing release of memory after effective lifetime CVE-2020-10726 |
CWE-401 | Medium | 2.13.0-25.el8fdp.1 | 19.05.2020 |
SB2020051904 SB2020052105 SB2020052302 and 3 more |
||
| #VU27998 - Missing release of memory after effective lifetime CVE-2020-10725 |
CWE-401 | Medium | 2.13.0-25.el8fdp.1 | 19.05.2020 |
SB2020051904 SB2020052105 SB2020052302 and 5 more |
||
| #VU27997 - Cryptographic Issues CVE-2020-10724 |
CWE-310 | Medium | 2.13.0-25.el8fdp.1 | 19.05.2020 |
SB2020051904 SB2020051905 SB2020052105 and 6 more |
||
| #VU27996 - Improper input validation CVE-2020-10723 |
CWE-20 | Medium | 2.9.0-130.el7fdp, 2.13.0-25.el8fdp.1 | 19.05.2020 |
SB2020051904 SB2020051905 SB2020052105 and 11 more |
||
| #VU27994 - Improper input validation CVE-2020-10722 |
CWE-20 | Medium | 2.9.0-130.el7fdp, 2.13.0-25.el8fdp.1 | 19.05.2020 |
SB2020051904 SB2020051905 SB2020052105 and 11 more |
||
| #VU48780 - Memory corruption CVE-2015-8011 |
CWE-119 | High | 2.9.9-1.el7fdp | 28.01.2020 |
SB2020012836 SB2020120408 SB2020120409 and 17 more |
||
| #VU50124 - Improper input validation CVE-2019-14818 |
CWE-20 | Medium | 2.9.0-124.el7fdp | 14.11.2019 |
SB2021012837 SB20200310150 SB2020012125 and 7 more |
||
| #VU12658 - Exposure of sensitive information to an unauthorized actor CVE-2018-1059 |
CWE-200 | Low | 2.9.0-19.el7fdp | 14.05.2018 |
SB2018021104 SB2018043010 SB2018060604 and 7 more |
||
| #VU11451 - Buffer overflow CVE-2016-2074 |
CWE-120 | High | 2.4.0-2.el7_2 | 02.04.2018 |
SB2016032904 SB2017010101 SB2016041101 and 4 more |
||
| #VU8433 - Integer underflow CVE-2017-9214 |
CWE-191 | Low | 2.4.1-2.git20160727.el7ost, 2.6.1-13.git20161206.el7ost, 2.7.2-1.git20170719.el7fdp | 14.09.2017 |
SB2017091404 SB2017101111 SB2017091241 and 7 more |
||
| #VU8432 - Improper input validation CVE-2017-9263 |
CWE-20 | Low | 2.4.1-2.git20160727.el7ost, 2.6.1-13.git20161206.el7ost, 2.7.2-1.git20170719.el7fdp | 14.09.2017 |
SB2017091404 SB2017101111 SB2017081805 and 7 more |
||
| #VU8431 - Buffer over-read CVE-2017-9265 |
CWE-126 | Low | 2.4.1-2.git20160727.el7ost, 2.6.1-13.git20161206.el7ost, 2.7.2-1.git20170719.el7fdp | 14.09.2017 |
SB2017091404 SB2017081805 SB2017091241 and 6 more |
||
| #VU38936 - Out-of-bounds read CVE-2017-9264 |
CWE-125 | High | 2.6.1-13.git20161206.el7ost, 2.7.2-1.git20170719.el7fdp | 29.05.2017 |
SB2017052919 SB20170613107 SB2017080328 and 2 more |