CVE-2024-2182
Publication date 12 March 2024
Last updated 24 July 2024
Ubuntu priority
A flaw was found in the Open Virtual Network (OVN). In OVN clusters where BFD is used between hypervisors for high availability, an attacker can inject specially crafted BFD packets from inside unprivileged workloads, including virtual machines or containers, that can trigger a denial of service.
Status
Package | Ubuntu Release | Status |
---|---|---|
ovn | 24.04 LTS noble |
Not affected
|
22.04 LTS jammy |
Fixed 22.03.3-0ubuntu0.22.04.2
|
|
20.04 LTS focal |
Fixed 20.03.2-0ubuntu0.20.04.5
|
Notes
References
Related Ubuntu Security Notices (USN)
- USN-6691-1
- OVN vulnerability
- 12 March 2024