Vulnerability Name:

CVE-2020-27827 (CCN-198421)

Assigned:2020-10-27
Published:2021-03-16
Updated:2023-04-20
Summary:
CVSS v3 Severity:7.5 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
6.5 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
6.5 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
CVSS v2 Severity:7.1 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
7.8 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2020-27827

Source: CCN
Type: Red Hat Bugzilla – Bug 1921438
(CVE-2020-27827) - CVE-2020-27827 lldp/openvswitch: denial of service via externally triggered memory leak

Source: secalert@redhat.com
Type: Issue Tracking, Mitigation, Patch, Third Party Advisory
secalert@redhat.com

Source: secalert@redhat.com
Type: Patch, Third Party Advisory
secalert@redhat.com

Source: XF
Type: UNKNOWN
openvswitch-cve202027827-dos(198421)

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: secalert@redhat.com
Type: UNKNOWN
secalert@redhat.com

Source: CCN
Type: ovs-dev Web site
CVE-2020-27827: lldp: Externally triggered memory leak.

Source: secalert@redhat.com
Type: Mailing List, Mitigation, Vendor Advisory
secalert@redhat.com

Source: secalert@redhat.com
Type: Third Party Advisory, US Government Resource
secalert@redhat.com

Vulnerable Configuration:Configuration CCN 1:
  • cpe:/a:openvswitch:openvswitch:*:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:7438
    P
    arpwatch-2.1a15-5.12.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7979
    P
    texlive-collection-basic-2021.185.svn56569-150400.19.4 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:8085
    P
    libopenvswitch-2_14-0-2.14.2-150400.24.3.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7431
    P
    amavisd-new-2.12.1-150400.1.4 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:51953
    P
    Security update for systemd (Moderate)
    2022-11-15
    oval:org.opensuse.security:def:95337
    P
    Security update for webkit2gtk3 (Important) (in QA)
    2022-08-01
    oval:org.opensuse.security:def:95382
    P
    Security update for aws-iam-authenticator (Important)
    2022-07-29
    oval:org.opensuse.security:def:3492
    P
    fuse-2.9.3-6.3.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:95122
    P
    libopenvswitch-2_14-0-2.14.2-150400.22.23 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:93291
    P
    (Moderate)
    2022-04-28
    oval:org.opensuse.security:def:102095
    P
    Security update for strongswan (Important)
    2022-02-18
    oval:org.opensuse.security:def:93138
    P
    (Important)
    2022-01-25
    oval:org.opensuse.security:def:99739
    P
    (Important)
    2022-01-25
    oval:org.opensuse.security:def:112745
    P
    libopenvswitch-2_14-0-2.14.2-11.3 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:112670
    P
    liblldpctl4-1.0.12-1.2 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:99146
    P
    (Moderate)
    2021-10-06
    oval:org.opensuse.security:def:106217
    P
    libopenvswitch-2_14-0-2.14.2-11.3 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:106151
    P
    liblldpctl4-1.0.12-1.2 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:5834
    P
    Security update for java-1_8_0-openjdk (Important)
    2021-08-20
    oval:org.opensuse.security:def:63343
    P
    libopenvswitch-2_14-0-2.14.2-17.1 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:63515
    P
    python2-ovs-2.11.5-3.15.3 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:2254
    P
    libopenvswitch-2_14-0-2.14.2-17.1 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:2426
    P
    python2-ovs-2.11.5-3.15.3 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:102050
    P
    Security update for libjpeg-turbo (Moderate)
    2021-06-11
    oval:org.opensuse.security:def:100049
    P
    (Important)
    2021-03-24
    oval:org.opensuse.security:def:111203
    P
    Security update for openvswitch (Important)
    2021-02-05
    oval:org.opensuse.security:def:83219
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:23162
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:118327
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:9790
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:92391
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:98951
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:33970
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:29419
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:81094
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:127163
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:109242
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:75991
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:9035
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:70481
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:88502
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:59535
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:54747
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:92590
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:69731
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:30012
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:82131
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:51150
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:92001
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:68527
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:89190
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:59793
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:23965
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:55242
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:95863
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:125598
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:108761
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:10341
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:92789
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:102576
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:97172
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:69930
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:99341
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:82626
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:21402
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:9591
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:92196
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:89448
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:33712
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:28924
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:55835
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:126766
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:92985
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:8840
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:99540
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:66923
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:88186
    P
    Security update for openvswitch (Important)
    2021-02-03
    oval:org.opensuse.security:def:31673
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:58810
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:69518
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:86137
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:57075
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:32168
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:84200
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:23652
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:10132
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:97167
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:34508
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:86632
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:57496
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:9378
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:32987
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:84657
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:8634
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:87451
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:31252
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:57991
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:51640
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:60331
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:85716
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:70272
    P
    Security update for openvswitch (Important)
    2021-02-02
    oval:org.opensuse.security:def:97163
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:5789
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:68520
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:95856
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:118512
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:108716
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:102569
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:109416
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:66878
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:118320
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:69068
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:96060
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:109235
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:75946
    P
    Security update for openvswitch (Important)
    2021-02-01
    oval:org.opensuse.security:def:102750
    P
    Security update for openvswitch (Important)
    2021-02-01
    BACK
    openvswitch openvswitch *