High severity7.5NVD Advisory· Published Aug 23, 2022· Updated Jun 17, 2026
CVE-2021-3905
CVE-2021-3905
Description
A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing. An attacker could use this flaw to potentially exhaust available memory by keeping sending packet fragments.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:a:openvswitch:openvswitch:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:openvswitch:openvswitch:*:*:*:*:*:*:*:*range: <2.17.0
- (no CPE)
cpe:2.3:a:redhat:enterprise_linux_fast_datapath:7.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:redhat:enterprise_linux_fast_datapath:7.0:*:*:*:*:*:*:*
- cpe:2.3:a:redhat:enterprise_linux_fast_datapath:8.0:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:21.10:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
- Open vSwitch/Open vSwitchdescription
Patches
Vulnerability mechanics
References
6- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party Advisory
- github.com/openvswitch/ovs/commit/803ed12e31b0377c37d7aa8c94b3b92f2081e349nvdPatchThird Party Advisory
- ubuntu.com/security/CVE-2021-3905nvdPatchThird Party Advisory
- github.com/openvswitch/ovs-issues/issues/226nvdExploitIssue TrackingPatchThird Party Advisory
- access.redhat.com/security/cve/CVE-2021-3905nvdThird Party Advisory
- security.gentoo.org/glsa/202311-16nvd
News mentions
0No linked articles in our index yet.