CVE-2024-2182

MEDIUM

OVN - DoS

Title source: llm
STIX 2.1

Description

A flaw was found in the Open Virtual Network (OVN). In OVN clusters where BFD is used between hypervisors for high availability, an attacker can inject specially crafted BFD packets from inside unprivileged workloads, including virtual machines or containers, that can trigger a denial of service.

Scores

CVSS v3 6.5
EPSS 0.0055
EPSS Percentile 68.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-346
Status published
Products (13)
Red Hat/Fast Datapath for Red Hat Enterprise Linux 8 0:21.12.0-142.el8fdp
Red Hat/Fast Datapath for Red Hat Enterprise Linux 8 0:22.03.3-71.el8fdp
Red Hat/Fast Datapath for Red Hat Enterprise Linux 8 0:22.12.1-94.el8fdp
Red Hat/Fast Datapath for Red Hat Enterprise Linux 8 0:23.03.1-100.el8fdp
Red Hat/Fast Datapath for Red Hat Enterprise Linux 8 0:23.06.1-112.el8fdp
Red Hat/Fast Datapath for Red Hat Enterprise Linux 9 0:22.03.3-71.el9fdp
Red Hat/Fast Datapath for Red Hat Enterprise Linux 9 0:22.12.1-94.el9fdp
Red Hat/Fast Datapath for Red Hat Enterprise Linux 9 0:23.03.1-100.el9fdp
Red Hat/Fast Datapath for Red Hat Enterprise Linux 9 0:23.06.1-112.el9fdp
Red Hat/Fast Datapath for Red Hat Enterprise Linux 9 0:23.09.0-136.el9fdp
... and 3 more
Published Mar 12, 2024
Tracked Since Feb 18, 2026