{"id":"CVE-2016-2074","details":"Buffer overflow in lib/flow.c in ovs-vswitchd in Open vSwitch 2.2.x and 2.3.x before 2.3.3 and 2.4.x before 2.4.1 allows remote attackers to execute arbitrary code via crafted MPLS packets, as demonstrated by a long string in an ovs-appctl command.","modified":"2026-07-08T05:49:07.963944713Z","published":"2016-07-03T21:59:10.837Z","database_specific":{"unresolved_ranges":[{"vendor_product":"openvswitch:openvswitch","cpes":["cpe:2.3:a:openvswitch:openvswitch:2.2.0:*:*:*:*:*:*:*","cpe:2.3:a:openvswitch:openvswitch:2.3.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"2.2.0"},{"last_affected":"2.2.0"},{"introduced":"2.3.0"},{"last_affected":"2.3.0"}],"source":"CPE_STRING"},{"cpes":["cpe:2.3:a:redhat:openshift:3.1:*:*:*:enterprise:*:*:*"],"extracted_events":[{"introduced":"3.1"},{"last_affected":"3.1"}],"source":"CPE_STRING","vendor_product":"redhat:openshift"}]},"references":[{"type":"WEB","url":"http://www.securityfocus.com/bid/85700"},{"type":"WEB","url":"https://security-tracker.debian.org/tracker/CVE-2016-2074"},{"type":"WEB","url":"https://support.citrix.com/article/CTX232655"},{"type":"ADVISORY","url":"http://openvswitch.org/pipermail/announce/2016-March/000082.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-0523.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-0524.html"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-0537.html"},{"type":"ADVISORY","url":"http://www.debian.org/security/2016/dsa-3533"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2016:0615"},{"type":"ADVISORY","url":"https://security.gentoo.org/glsa/201701-07"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1318553"},{"type":"FIX","url":"http://openvswitch.org/pipermail/announce/2016-March/000083.html"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/openvswitch/ovs","events":[{"introduced":"0dfed4ba9c8a16a1f316d709b7831a4e139472d4"},{"last_affected":"b979c282ef040a20d09b8d6885648b09352f05db"}],"database_specific":{"cpe":["cpe:2.3:a:openvswitch:openvswitch:2.3.1:*:*:*:*:*:*:*","cpe:2.3:a:openvswitch:openvswitch:2.3.2:*:*:*:*:*:*:*","cpe:2.3:a:openvswitch:openvswitch:2.4.0:*:*:*:*:*:*:*"],"extracted_events":[{"introduced":"2.3.1"},{"last_affected":"2.3.1"},{"introduced":"2.3.2"},{"last_affected":"2.3.2"},{"introduced":"2.4.0"},{"last_affected":"2.4.0"}],"source":"CPE_STRING"}}],"versions":["2.3.1","2.3.2","2.4.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-2074.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}