In the Linux kernel, the following vulnerability has been resolved: vxlan: Fix NPD when refreshing an FDB entry with a nexthop object VXLAN FDB entries can point to either a remote destination or a…
High CVSS 7.5
Summary
In the Linux kernel, the following vulnerability has been resolved: vxlan: Fix NPD when refreshing an FDB entry with a nexthop object VXLAN FDB entries can point to either a remote destination or an FDB nexthop group. The latter is usually used in EVPN deployments where learning is disabled. However, when learning is enabled, an incoming packet might try to refresh an FDB entry that points to an FDB nexthop group and therefore does not have a remote. Such packets should be dropped, but they …
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/0e8630f24c14d9c655d19eabe2e52a9e9f713307 Patch
- https://git.kernel.org/stable/c/4ff4f3104da6507e0f118c63c4560dfdeb59dce3 Patch
- https://git.kernel.org/stable/c/6ead38147ebb813f08be6ea8ef547a0e4c09559a Patch
Timeline
- nvd_ingest NVD