← לוח פגיעויות

CVE-2025-37789

גבוהה 7.8

תיאור (מקור, אנגלית)

In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: fix nested key length validation in the set() action It's not safe to access nla_len(ovs_key) if the data is smaller than the netlink header. Check that the attribute is OK first.

מדדים

CVSS 3.1
7.8 (HIGH) מקור הציון: NVD CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-20/9/2026

מוצרים מושפעים

linux: linux kernel; debian: debian linux

קישורים