CVE-2020-27827 PUBLISHED

A flaw was found in multiple versions of OpenvSwitch. Specially crafted LLDP packets can cause memory to be lost when allocating data to handle specific optional TLVs, potentially causing a denial of service. The highest threat from this vulnerability is to system availability.

EPSS 0.41% · 61.5th percentile

Risk Scores

EPSS Score
0.41%
61.5th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSlldpd0, 0.9.9-1ubuntu0.1, 0.9.9-1
Ubuntu:20.04:LTSlldpd1.0.4-1, 0, 1.0.4-1build2
Ubuntu:20.04:LTSopenvswitch0, 2.13.1-0ubuntu0.20.04.1, 2.13.0~git20200212.15ae9db33-0ubuntu2
Ubuntu:25.10lldpd0, 1.0.18-1build3, 1.0.18-1build4
Ubuntu:16.04:LTSlldpd0.7.19-1, 0.7.16-1, 0
Ubuntu:22.04:LTSlldpd1.0.13-1, 1.0.12-1, 1.0.11-1
Ubuntu:24.04:LTSlldpd1.0.18-1build3, 1.0.17-1, 1.0.18-1build1
Ubuntu:18.04:LTSopenvswitch2.9.5-0ubuntu0.18.04.1, 2.8.1-0ubuntu2, 0
Ubuntu:16.04:LTSopenvswitch2.5.0~git20160129.46a88d9-0ubuntu1, 2.4.0-0ubuntu5, 2.5.2-0ubuntu0.16.04.3

Timeline

References

Open in Interactive Console →