Information on source package openvswitch

Available versions

ReleaseVersion
jessie2.3.0+git20140819-3+deb8u1
stretch2.6.10-0+deb9u1
buster2.10.7+ds1-0+deb10u5
bullseye2.15.0+ds1-2+deb11u5
bookworm3.1.0-2+deb12u1
trixie3.4.0-1
sid3.4.0-1

Open issues

BugjessiestretchbusterbullseyebookwormtrixiesidDescription
CVE-2024-22563vulnerablevulnerablefixedfixedfixedfixedfixedopenvswitch 2.17.8 was discovered to contain a memory leak via the fun ...
CVE-2023-5366vulnerablevulnerablefixedfixedfixedfixedfixedA flaw was found in Open vSwitch that allows ICMPv6 Neighbor Advertise ...
CVE-2023-3966vulnerablevulnerablefixedfixedfixedfixedfixedA flaw was found in Open vSwitch where multiple versions are vulnerabl ...
CVE-2023-1668vulnerablevulnerablefixedfixedfixedfixedfixedA flaw was found in openvswitch (OVS). When processing an IP packet wi ...
CVE-2022-32166vulnerablevulnerablefixedfixedfixedfixedfixedIn ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer o ...
CVE-2022-4338vulnerablevulnerablefixedfixedfixedfixedfixedAn integer underflow in Organization Specific TLV was found in various ...
CVE-2022-4337vulnerablevulnerablefixedfixedfixedfixedfixedAn out-of-bounds read in Organization Specific TLV was found in variou ...
CVE-2021-36980vulnerablefixedfixedfixedfixedfixedfixedOpen vSwitch (aka openvswitch) 2.11.0 through 2.15.0 has a use-after-f ...
CVE-2020-35498vulnerablefixedfixedfixedfixedfixedfixedA vulnerability was found in openvswitch. A limitation in the implemen ...
CVE-2020-27827vulnerablefixedfixedfixedfixedfixedfixedA flaw was found in multiple versions of OpenvSwitch. Specially crafte ...
CVE-2019-25076vulnerablevulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, postponed)vulnerablevulnerableThe TSS (Tuple Space Search) algorithm in Open vSwitch 2.x through 2.1 ...
CVE-2015-8011vulnerablefixedfixedfixedfixedfixedfixedBuffer overflow in the lldp_decode function in daemon/protocols/lldp.c ...

Open unimportant issues

BugjessiestretchbusterbullseyebookwormtrixiesidDescription
CVE-2017-14970vulnerablevulnerablefixedfixedfixedfixedfixedIn lib/ofp-util.c in Open vSwitch (OvS) before 2.8.1, there are multip ...
CVE-2017-9265fixedvulnerablefixedfixedfixedfixedfixedIn Open vSwitch (OvS) v2.7.0, there is a buffer over-read while parsin ...
CVE-2017-9264fixedvulnerablefixedfixedfixedfixedfixedIn lib/conntrack.c in the firewall implementation in Open vSwitch (OvS ...
CVE-2017-9263fixedvulnerablefixedfixedfixedfixedfixedIn Open vSwitch (OvS) 2.7.0, while parsing an OpenFlow role status mes ...

Resolved issues

BugDescription
CVE-2021-3905A memory leak was found in Open vSwitch (OVS) during userspace IP frag ...
CVE-2018-17206An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The ...
CVE-2018-17205An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6, aff ...
CVE-2018-17204An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6, aff ...
CVE-2017-9214In Open vSwitch (OvS) 2.7.0, while parsing an OFPT_QUEUE_GET_CONFIG_RE ...
CVE-2016-10377In Open vSwitch (OvS) 2.5.0, a malformed IP packet can cause the switc ...
CVE-2016-2074Buffer overflow in lib/flow.c in ovs-vswitchd in Open vSwitch 2.2.x an ...
CVE-2012-3449Open vSwitch 1.4.2 uses world writable permissions for (1) /var/lib/op ...

Security announcements

DSA / DLADescription
DSA-5640-1openvswitch - security update
DLA-3734-1openvswitch - security update
DLA-3410-1openvswitch - security update
DSA-5387-1openvswitch - security update
DSA-5319-1openvswitch - security update
DLA-3253-1openvswitch - security update
DLA-3168-1openvswitch - security update
DLA-2571-1openvswitch - security update
DSA-4852-1openvswitch - security update
DSA-4836-1openvswitch - security update
DSA-3533-1openvswitch - security update

Search for package or bug name: Reporting problems