Known Vulnerabilities for products from Openvswitch

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Openvswitch".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-43466 json Not Provided 2026-05-08 2026-05-11
CVE-2026-39402 json Not Provided 2026-05-05 2026-05-06
CVE-2026-31679 json Not Provided 2026-04-25 2026-04-27
CVE-2026-31678 json Not Provided 2026-04-25 2026-04-27
CVE-2026-31508 json Not Provided 2026-04-22 2026-04-27
CVE-2025-21761 json Not Provided 2025-02-27 2026-05-12
CVE-2024-50046 json Not Provided 2024-10-21 2026-05-12
CVE-2024-38558 json Not Provided 2024-06-19 2026-05-12
CVE-2024-27395 json Not Provided 2024-05-14 2026-05-12
CVE-2024-22563 json 7.5 - HIGH 2024-01-19 2024-01-25
CVE-2023-5366 json A flaw was found in Open vSwitch that allows ICMPv6 Neighbor Advertisement packets between virtual machines to bypass OpenFlo... 5.5 - MEDIUM 2023-10-06 2024-03-16
CVE-2022-4338 json An integer underflow in Organization Specific TLV was found in various versions of OpenvSwitch. 9.8 - CRITICAL 2023-01-10 2023-11-26
CVE-2022-4337 json An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch. 9.8 - CRITICAL 2023-01-10 2023-11-26
CVE-2022-0669 json A flaw was found in dpdk. This flaw allows a malicious vhost-user master to attach an unexpected number of fds as ancillary d... 6.5 - MEDIUM 2022-08-29 2022-09-01
CVE-2021-36980 json Open vSwitch (aka openvswitch) 2.11.0 through 2.15.0 has a use-after-free in decode_NXAST_RAW_ENCAP (called from ofpact_decod... 5.5 - MEDIUM 2021-07-20 2023-11-26
CVE-2021-3905 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 7.5 - HIGH 2022-08-23 2023-11-26
CVE-2020-35498 json A vulnerability was found in openvswitch. A limitation in the implementation of userspace packet parsing can allow a maliciou... 7.5 - HIGH 2021-02-11 2023-11-26
CVE-2020-27827 json A flaw was found in multiple versions of OpenvSwitch. Specially crafted LLDP packets can cause memory to be lost when allocat... 7.5 - HIGH 2021-03-18 2023-11-26
CVE-2019-25076 json The TSS (Tuple Space Search) algorithm in Open vSwitch 2.x through 2.17.2 and 3.0.0 allows remote attackers to cause a denial... 5.8 - MEDIUM 2022-09-08 2022-09-13
CVE-2018-17206 json An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6. The decode_bundle function inside lib/ofp-actions.c is aff... 4.9 - MEDIUM 2018-09-19 2021-08-04

Known software with vulnerabilities from Openvswitch

Type Vendor Product Version
ApplicationOpenvswitchOpenvswitch1.0.1