Куда я попал?
SECURITM это SGRC система, ? автоматизирующая процессы в службах информационной безопасности. SECURITM помогает построить и управлять ИСПДн, КИИ, ГИС, СМИБ/СУИБ, банковскими системами защиты.
А еще SECURITM это место для обмена опытом и наработками для служб безопасности.

CVE-2026-34956

PUBLISHED 06.05.2026

CNA: redhat

Openvswitch: open vswitch: denial of service via malformed ftp epasv command

Обновлено: 05.05.2026
A flaw was found in Open vSwitch. When Open vSwitch is configured with a conntrack flow using FTP helpers over the userspace datapath, a remote attacker can send a specially crafted FTP stream with an EPASV command exceeding 255 characters. This heap access error can lead to a crash, resulting in a Denial of Service (DoS) for the affected system.

CWE

Идентификатор Описание
CWE-120 The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

CVSS

Оценка Severity Версия Базовый вектор
5.9 MEDIUM 3.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

Доп. Информация

Product Status

Fast Datapath for RHEL 7
Product: Fast Datapath for RHEL 7
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:7::fastdatapath
Fast Datapath for RHEL 7
Product: Fast Datapath for RHEL 7
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:7::fastdatapath
Fast Datapath for RHEL 7
Product: Fast Datapath for RHEL 7
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:7::fastdatapath
Fast Datapath for RHEL 7
Product: Fast Datapath for RHEL 7
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:7::fastdatapath
Fast Datapath for RHEL 7
Product: Fast Datapath for RHEL 7
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:7::fastdatapath
Fast Datapath for RHEL 7
Product: Fast Datapath for RHEL 7
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:7::fastdatapath
Fast Datapath for RHEL 7
Product: Fast Datapath for RHEL 7
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:7::fastdatapath
Fast Datapath for RHEL 7
Product: Fast Datapath for RHEL 7
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:7::fastdatapath
Fast Datapath for RHEL 8
Product: Fast Datapath for RHEL 8
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:8::fastdatapath
Fast Datapath for RHEL 8
Product: Fast Datapath for RHEL 8
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:8::fastdatapath
Fast Datapath for RHEL 8
Product: Fast Datapath for RHEL 8
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:8::fastdatapath
Fast Datapath for RHEL 8
Product: Fast Datapath for RHEL 8
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:8::fastdatapath
Fast Datapath for RHEL 8
Product: Fast Datapath for RHEL 8
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:8::fastdatapath
Fast Datapath for RHEL 8
Product: Fast Datapath for RHEL 8
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:8::fastdatapath
Fast Datapath for RHEL 8
Product: Fast Datapath for RHEL 8
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:8::fastdatapath
Fast Datapath for RHEL 8
Product: Fast Datapath for RHEL 8
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:8::fastdatapath
Fast Datapath for RHEL 8
Product: Fast Datapath for RHEL 8
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:8::fastdatapath
Fast Datapath for RHEL 8
Product: Fast Datapath for RHEL 8
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:8::fastdatapath
Fast Datapath for RHEL 9
Product: Fast Datapath for RHEL 9
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:9::fastdatapath
Fast Datapath for RHEL 9
Product: Fast Datapath for RHEL 9
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:9::fastdatapath
Fast Datapath for RHEL 9
Product: Fast Datapath for RHEL 9
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:9::fastdatapath
Fast Datapath for RHEL 9
Product: Fast Datapath for RHEL 9
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:9::fastdatapath
Fast Datapath for RHEL 9
Product: Fast Datapath for RHEL 9
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:9::fastdatapath
Fast Datapath for RHEL 9
Product: Fast Datapath for RHEL 9
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:9::fastdatapath
Fast Datapath for RHEL 9
Product: Fast Datapath for RHEL 9
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:9::fastdatapath
Fast Datapath for RHEL 9
Product: Fast Datapath for RHEL 9
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:9::fastdatapath
Fast Datapath for RHEL 9
Product: Fast Datapath for RHEL 9
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:9::fastdatapath
Red Hat Enterprise Linux 7
Product: Red Hat Enterprise Linux 7
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/o:redhat:enterprise_linux:7
Red Hat OpenShift Container Platform 4
Product: Red Hat OpenShift Container Platform 4
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/a:redhat:openshift:4
Red Hat OpenShift Container Platform 4
Product: Red Hat OpenShift Container Platform 4
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/a:redhat:openshift:4
Red Hat OpenShift Container Platform 4
Product: Red Hat OpenShift Container Platform 4
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/a:redhat:openshift:4
Red Hat OpenShift Container Platform 4
Product: Red Hat OpenShift Container Platform 4
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/a:redhat:openshift:4
Red Hat OpenStack Platform 13 (Queens)
Product: Red Hat OpenStack Platform 13 (Queens)
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/a:redhat:openstack:13
Red Hat OpenStack Platform 13 (Queens)
Product: Red Hat OpenStack Platform 13 (Queens)
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/a:redhat:openstack:13
Red Hat OpenStack Platform 13 (Queens)
Product: Red Hat OpenStack Platform 13 (Queens)
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/a:redhat:openstack:13
Red Hat OpenStack Platform 16.2
Product: Red Hat OpenStack Platform 16.2
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/a:redhat:openstack:16.2
Red Hat OpenStack Platform 16.2
Product: Red Hat OpenStack Platform 16.2
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/a:redhat:openstack:16.2
Red Hat OpenStack Platform 17.1
Product: Red Hat OpenStack Platform 17.1
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/a:redhat:openstack:17.1
Red Hat OpenStack Platform 17.1
Product: Red Hat OpenStack Platform 17.1
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/a:redhat:openstack:17.1
Red Hat OpenStack Platform 18.0
Product: Red Hat OpenStack Platform 18.0
Vendor: Red Hat
Default status: affected
СPE:
  • cpe:/a:redhat:openstack:18.0
 

Ссылки

CVE Program Container

Обновлено: 05.05.2026
SSVC and KEV, plus CVSS and CWE if not provided by the CNA.

Ссылки

CISA ADP Vulnrichment

Обновлено: 06.05.2026
Этот блок содержит дополнительную информацию, предоставленную программой CVE для этой уязвимости.

SSVC

Exploitation Automatable Technical Impact Версия Дата доступа
none no partial 2.0.3 06.05.2026

Мы используем cookie-файлы, чтобы получить статистику, которая помогает нам улучшить сервис для вас с целью персонализации сервисов и предложений. Вы может прочитать подробнее о cookie-файлах или изменить настройки браузера. Продолжая пользоваться сайтом, вы даёте согласие на использование ваших cookie-файлов и соглашаетесь с Политикой обработки персональных данных.