CVE-2024-2182
Not scored
CVE-2024-2182
A flaw was found in the Open Virtual Network (OVN). In OVN clusters where BFD is used between hypervisors for high availability, an attacker can inject specially crafted BFD packets from inside unprivileged workloads, including virtual machines or containers, that can trigger a denial of service.
Exploit probability
0.8%
Published
March 12, 2024
Required by
Not available
Last source change
July 13, 2026
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
CVE-2024-2182
View original source
A flaw was found in the Open Virtual Network (OVN). In OVN clusters where BFD is used between hypervisors for high availability, an attacker can inject specially crafted BFD packets from inside unprivileged workloads, including virtual machines or containers, that can trigger a denial of service.
05 / REFERENCES
Further evidence
- http://www.openwall.com/lists/oss-security/2024/03/12/5
- https://access.redhat.com/errata/RHSA-2024:1385
- https://access.redhat.com/errata/RHSA-2024:1386
- https://access.redhat.com/errata/RHSA-2024:1387
- https://access.redhat.com/errata/RHSA-2024:1388
- https://access.redhat.com/errata/RHSA-2024:1390
- https://access.redhat.com/errata/RHSA-2024:1391
- https://access.redhat.com/errata/RHSA-2024:1392
- https://access.redhat.com/errata/RHSA-2024:1393
- https://access.redhat.com/errata/RHSA-2024:1394
- https://access.redhat.com/errata/RHSA-2024:4035
- https://access.redhat.com/security/cve/CVE-2024-2182
- https://bugzilla.redhat.com/show_bug.cgi?id=2267840
- https://lists.fedoraproject.org/archives/list/[email protected]/message/APR4GCVCMQD3DQUKXDNGIXCCYGE5V7IT/
- https://lists.fedoraproject.org/archives/list/[email protected]/message/CB4N522FCS4XWAPUKRWZF6QZ657FCIDF/
- https://lists.fedoraproject.org/archives/list/[email protected]/message/XRKXOOOKD56TY3JQVB45N3GCTX3EG4BV/
- https://mail.openvswitch.org/pipermail/ovs-announce/2024-March/000346.html
- https://www.openwall.com/lists/oss-security/2024/03/12/5