CVE-2023-3966 is a denial-of-service vulnerability affecting multiple versions of Open vSwitch, specifically when hardware offloading via the netlink path is enabled. This flaw allows an unauthenticated attacker to trigger invalid memory accesses by sending specially crafted Geneve packets. With a CVSS score of 7.5 (HIGH), the vulnerability is easily exploitable over the network with low attack complexity, leading to a complete loss of availability. There is currently no public exploit code available, nor is it known to be actively exploited in the wild, despite some limited community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 3.1.0CPE matchmatch criteria | cpe:2.3:a:openvswitch:openvswitch:*:*:*:*:*:*:*:* | ||
39CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* | ||
40CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE match | cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2023-3966
Jun 11, 2024Openvswsitch: ovs-vswitch fails to recover after malformed geneve metadata packet
Feb 13, 2024openvswsitch: ovs-vswitch fails to recover after malformed geneve metadata packet
Feb 8, 2024