Multiple versions of Open vSwitch are vulnerable to crafted FTP payloads causing invalid memory accesses, potential denial of service, and possible remote code execution. This impacts the userspace implementation of conntrack when configured with conntrack flows specifying the FTP alg handler.
| Vendor | Product | Versions |
|---|---|---|
| open vswitch | open vswitch | — |