Loading HuntDB...

GHSA-w6wh-qr7x-h932

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

An integer coercion error was found in the openvswitch kernel module. Given a sufficiently large number of actions, while copying and reserving memory for a new action of a new flow, the reserve_sfa_size() function does not return -EMSGSIZE as expected, potentially leading to an out-of-bounds write access. This flaw allows a local user to crash or potentially escalate their privileges on the system.

Related CVEs

Key Information

GHSA ID
GHSA-w6wh-qr7x-h932
Published
September 2, 2022 12:01 AM
Last Modified
September 8, 2022 12:00 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 15, 2025 6:24 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.