THREATOPS
THREAT OPSThreat News › [NVD] CVE-2021-46955 (HIGH 8.2) — In the Linux kernel, the following vulnerability has been resolved: openvswitch: fix stack OOB read while fragmenting IPv4 packets running openvswitch on kernels built with KASAN, it's possible to see the following splat while testing fragmentation of IPv4 packets: BUG: KASAN

[NVD] CVE-2021-46955 (HIGH 8.2) — In the Linux kernel, the following vulnerability has been resolved: openvswitch: fix stack OOB read while fragmenting IPv4 packets running openvswitch on kernels built with KASAN, it's possible to see the following splat while testing fragmentation of IPv4 packets: BUG: KASAN

lownvdPublished 2024-02-27

CVE-2021-46955 CVSS: 8.2 HIGH Published: 2024-02-27T19:04:06.667

In the Linux kernel, the following vulnerability has been resolved:

openvswitch: fix stack OOB read while fragmenting IPv4 packets

running openvswitch on kernels built with KASAN, it's possible to see the following splat while testing fragmentation of IPv4 packets:

BUG: KASAN: stack-out-of-bounds in ip_do_fragment+0x1b03/0x1f60

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2021-46955