Memory leak in Open vSwitch - CVE-2021-3905

 

Memory leak in Open vSwitch - CVE-2021-3905

Published: March 13, 2023


Vulnerability identifier: #VU73248
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-3905
CWE-ID: CWE-401
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform DoS attack on the target system.

The vulnerability exists due memory leak in lib/ipf.c during userspace IP fragmentation processing. A remote attacker can send specially crafted packet fragments to the system to trigger memory leak and perform denial of service attack.


Affected software

Open vSwitch
Gentoo Linux
openEuler
Ubuntu
Red Hat Enterprise Linux Fast Datapath
openvswitch-ovn-host
openvswitch-test
openvswitch-ipsec
openvswitch-ovn-central
network-scripts-openvswitch
openvswitch-devel
python3-openvswitch
openvswitch-ovn-common
openvswitch-ovn-vtep
openvswitch-debugsource
openvswitch-debuginfo
openvswitch-help
openvswitch
openvswitch2.13 (Red Hat package)
openvswitch2.15 (Red Hat package)
openvswitch-common (Ubuntu package)
openvswitch2.16 (Red Hat package)
net-misc/openvswitch

How to mitigate CVE-2021-3905

Install updates from vendor's website.

Open vSwitch - addressed in versions 2.12.4, 2.13.5, 2.14.3, 2.15.2, 2.16.1
openvswitch-ovn-host - update to 2.12.0-16
openvswitch-test - update to 2.12.0-16
openvswitch-ipsec - update to 2.12.0-16
openvswitch-ovn-central - update to 2.12.0-16
network-scripts-openvswitch - update to 2.12.0-16
openvswitch-devel - update to 2.12.0-16
python3-openvswitch - update to 2.12.0-16
openvswitch-ovn-common - update to 2.12.0-16
openvswitch-ovn-vtep - update to 2.12.0-16
openvswitch-debugsource - update to 2.12.0-16
openvswitch-debuginfo - update to 2.12.0-16
openvswitch-help - update to 2.12.0-16
openvswitch - update to 2.12.0-16
openvswitch2.13 (Red Hat package) - update to 2.13.0-139.el8fdp
openvswitch2.15 (Red Hat package) - update to 2.15.0-55.el8fdp
openvswitch-common (Ubuntu package) - update to 2.16.0-0ubuntu2.1
openvswitch2.16 (Red Hat package) - update to 2.16.0-86.el8fdp
net-misc/openvswitch - update to 2.17.6

External References

Related Security Bulletins