CVE-2023-5366

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Oct 6, 2023
Updated: Mar 23, 2024
CWE ID 345

Summary

CVE-2023-5366 is a vulnerability affecting Open vSwitch. This issue permits ICMPv6 Neighbor Advertisement packets to circumvent OpenFlow rules between virtual machines. A local attacker can exploit this flaw to generate crafted packets with manipulated target IP addresses, potentially redirecting ICMPv6 traffic to unintended IP addresses. This vulnerability poses a risk for traffic redirection attacks. It is crucial for Open vSwitch users to apply the relevant patches to mitigate this security concern.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Open vSwitch
  • Red Hat Enterprise Linux
  • Red Hat Openshift Container Platform
  • Red Hat Virtualization

Affected Vendors

  • Red Hat

Prioritize, Pinpoint, and Act to Prevent Vulnerability Exploits with Recorded Future

Note: This is just a basic overview providing quick insights into CVE-2023-5366 information. Gain full access to comprehensive CVE data, third party vulnerabilities, compromised credentials and more with Recorded Future
  • Gain complete coverage of your cyber, third party, and physical attack surface
  • Proactively mitigate threats before they turn into costly attacks
  • Make fast, effective, data-driven decisions