Memory leak in Open vSwitch - CVE-2021-3905
Published: March 13, 2023
Vulnerability identifier: #VU73248
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-3905
CWE-ID: CWE-401
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to perform DoS attack on the target system.
The vulnerability exists due memory leak in lib/ipf.c during userspace IP fragmentation processing. A remote attacker can send specially crafted packet fragments to the system to trigger memory leak and perform denial of service attack.
Affected software
Open vSwitch
Gentoo Linux
openEuler
Ubuntu
Red Hat Enterprise Linux Fast Datapath
openvswitch-ovn-host
openvswitch-test
openvswitch-ipsec
openvswitch-ovn-central
network-scripts-openvswitch
openvswitch-devel
python3-openvswitch
openvswitch-ovn-common
openvswitch-ovn-vtep
openvswitch-debugsource
openvswitch-debuginfo
openvswitch-help
openvswitch
openvswitch2.13 (Red Hat package)
openvswitch2.15 (Red Hat package)
openvswitch-common (Ubuntu package)
openvswitch2.16 (Red Hat package)
net-misc/openvswitch
Gentoo Linux
openEuler
Ubuntu
Red Hat Enterprise Linux Fast Datapath
openvswitch-ovn-host
openvswitch-test
openvswitch-ipsec
openvswitch-ovn-central
network-scripts-openvswitch
openvswitch-devel
python3-openvswitch
openvswitch-ovn-common
openvswitch-ovn-vtep
openvswitch-debugsource
openvswitch-debuginfo
openvswitch-help
openvswitch
openvswitch2.13 (Red Hat package)
openvswitch2.15 (Red Hat package)
openvswitch-common (Ubuntu package)
openvswitch2.16 (Red Hat package)
net-misc/openvswitch
How to mitigate CVE-2021-3905
Install updates from vendor's website.
Open vSwitch - addressed in versions 2.12.4, 2.13.5, 2.14.3, 2.15.2, 2.16.1
openvswitch-ovn-host - update to 2.12.0-16
openvswitch-test - update to 2.12.0-16
openvswitch-ipsec - update to 2.12.0-16
openvswitch-ovn-central - update to 2.12.0-16
network-scripts-openvswitch - update to 2.12.0-16
openvswitch-devel - update to 2.12.0-16
python3-openvswitch - update to 2.12.0-16
openvswitch-ovn-common - update to 2.12.0-16
openvswitch-ovn-vtep - update to 2.12.0-16
openvswitch-debugsource - update to 2.12.0-16
openvswitch-debuginfo - update to 2.12.0-16
openvswitch-help - update to 2.12.0-16
openvswitch - update to 2.12.0-16
openvswitch2.13 (Red Hat package) - update to 2.13.0-139.el8fdp
openvswitch2.15 (Red Hat package) - update to 2.15.0-55.el8fdp
openvswitch-common (Ubuntu package) - update to 2.16.0-0ubuntu2.1
openvswitch2.16 (Red Hat package) - update to 2.16.0-86.el8fdp
net-misc/openvswitch - update to 2.17.6
openvswitch-ovn-host - update to 2.12.0-16
openvswitch-test - update to 2.12.0-16
openvswitch-ipsec - update to 2.12.0-16
openvswitch-ovn-central - update to 2.12.0-16
network-scripts-openvswitch - update to 2.12.0-16
openvswitch-devel - update to 2.12.0-16
python3-openvswitch - update to 2.12.0-16
openvswitch-ovn-common - update to 2.12.0-16
openvswitch-ovn-vtep - update to 2.12.0-16
openvswitch-debugsource - update to 2.12.0-16
openvswitch-debuginfo - update to 2.12.0-16
openvswitch-help - update to 2.12.0-16
openvswitch - update to 2.12.0-16
openvswitch2.13 (Red Hat package) - update to 2.13.0-139.el8fdp
openvswitch2.15 (Red Hat package) - update to 2.15.0-55.el8fdp
openvswitch-common (Ubuntu package) - update to 2.16.0-0ubuntu2.1
openvswitch2.16 (Red Hat package) - update to 2.16.0-86.el8fdp
net-misc/openvswitch - update to 2.17.6
External References
Related Security Bulletins
- Denial of service in Open vSwitch (OVS)
- Red Hat Enterprise Linux Fast Datapath 8 update for openvswitch2.15
- Red Hat Enterprise Linux Fast Datapath 8 update for openvswitch2.13
- Red Hat Enterprise Linux Fast Datapath 8 update for openvswitch2.16
- Ubuntu update for openvswitch
- Gentoo update for Open vSwitch
- openEuler update for openvswitch