CVE-2021-3499
Summary
| CVE | CVE-2021-3499 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-06-02 16:15:00 UTC |
| Updated | 2023-02-12 23:41:00 UTC |
| Description | A vulnerability was found in OVN Kubernetes in versions up to and including 0.3.0 where the Egress Firewall does not reliably apply firewall rules when there is multiple DNS rules. It could lead to potentially lose of confidentiality, integrity or availability of a service. |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|
| Application |
Ovn |
Ovn-kubernetes |
All |
All |
All |
All |
References
| Reference | Source | Link | Tags |
|---|
| Red Hat Customer Portal - Access to 24x7 support and knowledge |
MISC |
access.redhat.com |
|
| Red Hat Customer Portal - Access to 24x7 support and knowledge |
MISC |
access.redhat.com |
|
| 1949188 – (CVE-2021-3499) CVE-2021-3499 openshift/ovn-kubernetes: Egress Firewall does not reliably apply firewall rules |
MISC |
bugzilla.redhat.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 982346 Go (go) Security Update for github.com/ovn-org/ovn-kubernetes (GHSA-57v4-m9jx-mh8r)