CVE-2022-4338

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
10/01/2023
Last modified:
26/11/2023

Description

An integer underflow in Organization Specific TLV was found in various versions of OpenvSwitch.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:openvswitch:openvswitch:*:*:*:*:*:*:*:* 2.13.10 (excluding)
cpe:2.3:a:openvswitch:openvswitch:*:*:*:*:*:*:*:* 2.14.0 (including) 2.14.8 (excluding)
cpe:2.3:a:openvswitch:openvswitch:*:*:*:*:*:*:*:* 2.15.0 (including) 2.15.7 (excluding)
cpe:2.3:a:openvswitch:openvswitch:*:*:*:*:*:*:*:* 2.16.0 (including) 2.16.6 (excluding)
cpe:2.3:a:openvswitch:openvswitch:*:*:*:*:*:*:*:* 2.17.0 (including) 2.17.5 (excluding)
cpe:2.3:a:openvswitch:openvswitch:*:*:*:*:*:*:*:* 3.0.0 (including) 3.0.3 (excluding)
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*