CVE Database
/

CVE-2024-2182

Back to search

CVE-2024-2182

Published: Mar 12, 2024

Modified: Nov 8, 2025

PUBLISHED

CVSS v3.1

6.5

MEDIUM

Description

A flaw was found in the Open Virtual Network (OVN). In OVN clusters where BFD is used between hypervisors for high availability, an attacker can inject specially crafted BFD packets from inside unprivileged workloads, including virtual machines or containers, that can trigger a denial of service.

VendorProductVersions

Unknown

ovn

affected
20.03.0 - < *

Red Hat

Fast Datapath for Red Hat Enterprise Linux 8

unaffected
0:23.06.1-112.el8fdp - < *

Red Hat

Fast Datapath for Red Hat Enterprise Linux 8

unaffected
0:22.12.1-94.el8fdp - < *

Red Hat

Fast Datapath for Red Hat Enterprise Linux 8

unaffected
0:22.03.3-71.el8fdp - < *

Red Hat

Fast Datapath for Red Hat Enterprise Linux 8

unaffected
0:23.03.1-100.el8fdp - < *

Red Hat

Fast Datapath for Red Hat Enterprise Linux 8

unaffected
0:21.12.0-142.el8fdp - < *

Red Hat

Fast Datapath for Red Hat Enterprise Linux 9

unaffected
0:23.09.0-136.el9fdp - < *

Red Hat

Fast Datapath for Red Hat Enterprise Linux 9

unaffected
0:23.06.1-112.el9fdp - < *

Red Hat

Fast Datapath for Red Hat Enterprise Linux 9

unaffected
0:22.12.1-94.el9fdp - < *

Red Hat

Fast Datapath for Red Hat Enterprise Linux 9

unaffected
0:22.03.3-71.el9fdp - < *

Red Hat

Fast Datapath for Red Hat Enterprise Linux 9

unaffected
0:23.03.1-100.el9fdp - < *

Red Hat

Fast Datapath for RHEL 7

All versions

Red Hat

Fast Datapath for RHEL 7

All versions

Red Hat

Fast Datapath for RHEL 7

All versions

Red Hat

Fast Datapath for RHEL 8

All versions

Red Hat

Fast Datapath for RHEL 8

All versions

Red Hat

Fast Datapath for RHEL 8

All versions

Red Hat

Fast Datapath for RHEL 8

All versions

Red Hat

Fast Datapath for RHEL 8

All versions

Red Hat

Fast Datapath for RHEL 9

All versions

Red Hat

Fast Datapath for RHEL 9

All versions

Red Hat

Fast Datapath for RHEL 9

All versions

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector

Network

Attack Complexity

Low

Privileges Required

Low

User Interaction

None

Scope

Unchanged

Confidentiality

None

Integrity

None

Availability

High

References

RHSA-2024:1385
vendor-advisory
x_refsource_REDHAT
RHSA-2024:1386
vendor-advisory
x_refsource_REDHAT
RHSA-2024:1387
vendor-advisory
x_refsource_REDHAT
RHSA-2024:1388
vendor-advisory
x_refsource_REDHAT
RHSA-2024:1390
vendor-advisory
x_refsource_REDHAT
RHSA-2024:1391
vendor-advisory
x_refsource_REDHAT
RHSA-2024:1392
vendor-advisory
x_refsource_REDHAT
RHSA-2024:1393
vendor-advisory
x_refsource_REDHAT
RHSA-2024:1394
vendor-advisory
x_refsource_REDHAT
RHSA-2024:4035
vendor-advisory
x_refsource_REDHAT
RHBZ#2267840
issue-tracking
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now