Source: openvswitch Version: 2.15.0~git20210104.def6eb1ea+dfsg1-3 Severity: grave Tags: security upstream Justification: user security hole X-Debbugs-Cc: car...@debian.org, Debian Security Team <t...@security.debian.org> Control: found -1 2.10.0+2018.08.28+git.8ca7c82b7d+ds1-12+deb10u2 Control: found -1 2.10.0+2018.08.28+git.8ca7c82b7d+ds1-12
Hi, The following vulnerability was published for openvswitch. CVE-2020-27827[0]: | lldp: avoid memory leak from bad packets If you fix the vulnerability please also make sure to include the CVE (Common Vulnerabilities & Exposures) id in your changelog entry. For further information see: [0] https://security-tracker.debian.org/tracker/CVE-2020-27827 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-27827 [1] https://mail.openvswitch.org/pipermail/ovs-announce/2021-January/000269.html [2] https://github.com/openvswitch/ovs/commit/78e712c0b1dacc2f12d2a03d98f083d8672867f0 Regards, Salvatore