|
2 | 2 | "id": "EUVD-2026-25420", |
3 | 3 | "enisaUuid": "3d79cc81-4ebd-3ee3-a80b-f189209e9efa", |
4 | 4 | "description": "When generating an ICMP Destination Unreachable or Packet Too Big response, the handler copies a portion of the original packet into the ICMP error body using the IP header's self-declared total length (ip_tot_len for IPv4, ip6_plen for IPv6) without validating it against the actual packet buffer size. A VM can send a short packet with an inflated IP length field that triggers an ICMP error (e.g., by hitting a reject ACL), causing ovn-controller to read heap memory beyond the valid packet data and include it in the ICMP response sent back to the VM.", |
5 | | - "datePublished": "Apr 24, 2026, 3:32:32 PM", |
6 | | - "dateUpdated": "Apr 24, 2026, 3:32:32 PM", |
| 5 | + "datePublished": "Apr 24, 2026, 12:25:06 PM", |
| 6 | + "dateUpdated": "Jun 1, 2026, 12:15:34 AM", |
7 | 7 | "baseScore": 6.5, |
8 | 8 | "baseScoreVersion": "3.1", |
9 | 9 | "baseScoreVector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:H", |
10 | | - "references": "https://access.redhat.com/security/cve/CVE-2026-5265\nhttps://bugzilla.redhat.com/show_bug.cgi?id=2453458\nhttps://nvd.nist.gov/vuln/detail/CVE-2026-5265\nhttp://www.openwall.com/lists/oss-security/2026/04/20/2\nhttp://www.openwall.com/lists/oss-security/2026/04/20/4\n", |
| 10 | + "references": "https://access.redhat.com/errata/RHSA-2026:11694\nhttps://access.redhat.com/errata/RHSA-2026:11695\nhttps://access.redhat.com/errata/RHSA-2026:11696\nhttps://access.redhat.com/errata/RHSA-2026:11698\nhttps://access.redhat.com/errata/RHSA-2026:11700\nhttps://access.redhat.com/errata/RHSA-2026:11701\nhttps://access.redhat.com/errata/RHSA-2026:11702\nhttps://access.redhat.com/errata/RHSA-2026:22110\nhttps://access.redhat.com/security/cve/CVE-2026-5265\nhttps://bugzilla.redhat.com/show_bug.cgi?id=2453458\n", |
11 | 11 | "aliases": "GHSA-whr7-6788-jg2p\nCVE-2026-5265\n", |
12 | 12 | "assigner": "redhat", |
13 | | - "epss": 0.0, |
14 | | - "enisaIdProduct": [], |
| 13 | + "epss": 0.1, |
| 14 | + "enisaIdProduct": [ |
| 15 | + { |
| 16 | + "id": "00e899ac-a7b5-3798-b8aa-ec47f264caab", |
| 17 | + "product": { |
| 18 | + "name": "Fast Datapath for Red Hat Enterprise Linux 9", |
| 19 | + "vendor": { |
| 20 | + "name": "Red Hat" |
| 21 | + } |
| 22 | + }, |
| 23 | + "product_version": "patch: 0:23.09.6-16.el9fdp" |
| 24 | + }, |
| 25 | + { |
| 26 | + "id": "2470735b-70cf-32f3-99e9-091d5d6dddab", |
| 27 | + "product": { |
| 28 | + "name": "Fast Datapath for Red Hat Enterprise Linux 9", |
| 29 | + "vendor": { |
| 30 | + "name": "Red Hat" |
| 31 | + } |
| 32 | + }, |
| 33 | + "product_version": "patch: 0:25.03.2-100.el9fdp" |
| 34 | + }, |
| 35 | + { |
| 36 | + "id": "63abd9df-9747-33a0-9125-0db008e6bf03", |
| 37 | + "product": { |
| 38 | + "name": "Fast Datapath for Red Hat Enterprise Linux 9", |
| 39 | + "vendor": { |
| 40 | + "name": "Red Hat" |
| 41 | + } |
| 42 | + }, |
| 43 | + "product_version": "patch: 0:24.03.7-82.el9fdp" |
| 44 | + }, |
| 45 | + { |
| 46 | + "id": "671fa0d0-e562-3bc1-ada0-3d1e2221faad", |
| 47 | + "product": { |
| 48 | + "name": "Fast Datapath for Red Hat Enterprise Linux 8", |
| 49 | + "vendor": { |
| 50 | + "name": "Red Hat" |
| 51 | + } |
| 52 | + }, |
| 53 | + "product_version": "patch: 0:23.06.4-30.el8fdp" |
| 54 | + }, |
| 55 | + { |
| 56 | + "id": "723a35cf-2da9-3836-82dd-a57bb6289127", |
| 57 | + "product": { |
| 58 | + "name": "Fast Datapath for Red Hat Enterprise Linux 8", |
| 59 | + "vendor": { |
| 60 | + "name": "Red Hat" |
| 61 | + } |
| 62 | + }, |
| 63 | + "product_version": "patch: 0:21.12.0-145.el8fdp" |
| 64 | + }, |
| 65 | + { |
| 66 | + "id": "bbbf9dde-3512-35f5-a964-f7482266bc2d", |
| 67 | + "product": { |
| 68 | + "name": "Fast Datapath for Red Hat Enterprise Linux 9", |
| 69 | + "vendor": { |
| 70 | + "name": "Red Hat" |
| 71 | + } |
| 72 | + }, |
| 73 | + "product_version": "patch: 0:23.06.4-30.el9fdp" |
| 74 | + }, |
| 75 | + { |
| 76 | + "id": "bdd4206a-9a83-336b-bd94-8e5d475f1352", |
| 77 | + "product": { |
| 78 | + "name": "Fast Datapath for Red Hat Enterprise Linux 9", |
| 79 | + "vendor": { |
| 80 | + "name": "Red Hat" |
| 81 | + } |
| 82 | + }, |
| 83 | + "product_version": "patch: 0:25.09.2-103.el9fdp" |
| 84 | + }, |
| 85 | + { |
| 86 | + "id": "c8e3fb8e-071b-3c44-92df-2730f10413ca", |
| 87 | + "product": { |
| 88 | + "name": "Fast Datapath for Red Hat Enterprise Linux 10", |
| 89 | + "vendor": { |
| 90 | + "name": "Red Hat" |
| 91 | + } |
| 92 | + }, |
| 93 | + "product_version": "patch: 0:25.03.2-100.el10fdp" |
| 94 | + } |
| 95 | + ], |
15 | 96 | "enisaIdVendor": [ |
16 | 97 | { |
17 | 98 | "id": "591c0957-c373-33ad-b491-ecc294b0460f", |
|
0 commit comments