CVE-2026-34956

EUVD-2026-27345
A flaw was found in Open vSwitch. When Open vSwitch is configured with a conntrack flow using FTP helpers over the userspace datapath, a remote attacker can send a specially crafted FTP stream with an EPASV command exceeding 255 characters. This heap access error can lead to a crash, resulting in a Denial of Service (DoS) for the affected system.
Classic Buffer Overflow
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.9 MEDIUM
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 26%
Debian logo
Debian Releases
Debian Product
Codename
openvswitch
bookworm
no-dsa
bookworm (security)
vulnerable
bullseye
vulnerable
bullseye (security)
vulnerable
forky
3.7.1-2
fixed
sid
3.7.1-2
fixed
trixie
no-dsa
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
libopenvswitch-3_5-0
suse enterprise sap 15 SP7
3.5.4-150700.41.15.1
fixed
suse enterprise server 15 SP7
3.5.4-150700.41.15.1
fixed
libovn-25_03-0
suse enterprise sap 15 SP7
25.03.2-150700.41.15.1
fixed
suse enterprise server 15 SP7
25.03.2-150700.41.15.1
fixed
openvswitch
suse enterprise sap 15 SP7
3.5.4-150700.41.15.1
fixed
suse enterprise server 15 SP7
3.5.4-150700.41.15.1
fixed
openvswitch-devel
suse enterprise sap 15 SP7
3.5.4-150700.41.15.1
fixed
suse enterprise server 15 SP7
3.5.4-150700.41.15.1
fixed
openvswitch-ipsec
suse enterprise sap 15 SP7
3.5.4-150700.41.15.1
fixed
suse enterprise server 15 SP7
3.5.4-150700.41.15.1
fixed
openvswitch-pki
suse enterprise sap 15 SP7
3.5.4-150700.41.15.1
fixed
suse enterprise server 15 SP7
3.5.4-150700.41.15.1
fixed
openvswitch-test
suse enterprise sap 15 SP7
3.5.4-150700.41.15.1
fixed
suse enterprise server 15 SP7
3.5.4-150700.41.15.1
fixed
openvswitch-vtep
suse enterprise sap 15 SP7
3.5.4-150700.41.15.1
fixed
suse enterprise server 15 SP7
3.5.4-150700.41.15.1
fixed
ovn
suse enterprise sap 15 SP7
25.03.2-150700.41.15.1
fixed
suse enterprise server 15 SP7
25.03.2-150700.41.15.1
fixed
ovn-central
suse enterprise sap 15 SP7
25.03.2-150700.41.15.1
fixed
suse enterprise server 15 SP7
25.03.2-150700.41.15.1
fixed
ovn-devel
suse enterprise sap 15 SP7
25.03.2-150700.41.15.1
fixed
suse enterprise server 15 SP7
25.03.2-150700.41.15.1
fixed
ovn-docker
suse enterprise sap 15 SP7
25.03.2-150700.41.15.1
fixed
suse enterprise server 15 SP7
25.03.2-150700.41.15.1
fixed
ovn-host
suse enterprise sap 15 SP7
25.03.2-150700.41.15.1
fixed
suse enterprise server 15 SP7
25.03.2-150700.41.15.1
fixed
ovn-vtep
suse enterprise sap 15 SP7
25.03.2-150700.41.15.1
fixed
suse enterprise server 15 SP7
25.03.2-150700.41.15.1
fixed
python3-openvswitch
suse enterprise sap 15 SP7
3.5.4-150700.41.15.1
fixed
suse enterprise server 15 SP7
3.5.4-150700.41.15.1
fixed