NA

CVE-2022-28199

Published: 01/09/2022 Updated: 07/09/2022
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

NVIDIA’s distribution of the Data Plane Development Kit (MLNX_DPDK) contains a vulnerability in the network stack, where error recovery is not handled properly, which can allow a remote malicious user to cause denial of service and some impact to data integrity and confidentiality.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

nvidia data_plane_development_kit

Vendor Advisories

Debian Bug report logs - #1019589 dpdk: CVE-2022-28199 CVE-2022-2132 Package: src:dpdk; Maintainer for src:dpdk is Debian DPDK Maintainers <pkg-dpdk-devel@listsaliothdebianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Mon, 12 Sep 2022 18:27:02 UTC Severity: grave Tags: security, upstream Found in v ...
A buffer overflow was discovered in the vhost code of DPDK, a set of libraries for fast packet processing, which could result in denial of service or the execution of arbitrary code by malicious guests/containers For the stable distribution (bullseye), these problems have been fixed in version 20116-1~deb11u1 We recommend that you upgrade your ...
Synopsis Moderate: openvswitch213 security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for openvswitch213 is now available for Fast Datapath for Red Hat Enterprise Linux 8Red Hat Product Security ha ...
Synopsis Moderate: openvswitch215 security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for openvswitch215 is now available in Fast Datapath for Red HatEnterprise Linux 8Red Hat Product Security has ...
Synopsis Important: dpdk security and bug fix update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for dpdk is now available for Red Hat Enterprise Linux 9Red Hat Product Security has rated this update as hav ...
Synopsis Moderate: openvswitch217 security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for openvswitch213 is now available for Fast Datapath for RedHat Enterprise Linux 8Red Hat Product Security has ...
Synopsis Moderate: openvswitch216 security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for openvswitch213 is now available for Fast Datapath for RedHat Enterprise Linux 8Red Hat Product Security has ...
Synopsis Moderate: openvswitch217 security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for openvswitch213 is now available for Fast Datapath for RedHat Enterprise Linux 8Red Hat Product Security has ...
Synopsis Moderate: OpenShift Container Platform 4115 bug fix and security update Type/Severity Security Advisory: Moderate Topic Red Hat OpenShift Container Platform release 4115 is now available withupdates to packages and images that fix several bugs and add enhancementsThis release includes a security update for Red Hat OpenShift Cont ...
NVIDIA’s distribution of the Data Plane Development Kit (MLNX_DPDK) contains a vulnerability in the network stack, where error recovery is not handled properly, which can allow a remote attacker to cause denial of service and some impact to data integrity and confidentiality ...
On August 29, 2022, NVIDIA announced the following vulnerability with a medium impact: CVE-2022-28199: Security Bulletin: NVIDIA Data Plane Development Kit (MLNX_DPDK) - August 2022 For a description of this vulnerability, see Security Bulletin: NVIDIA Data Plane Development Kit (MLNX_DPDK) - August 2022 This advisory will be updated as additional ...
CVE-2022-28199 Informational: PAN-OS: Impact of the NVIDIA Dataplane Development Kit (DPDK) Vulnerability CVE-2022-28199 ...

Recent Articles

Dump these small-biz routers, says Cisco, because we won't patch their flawed VPN
The Register • Jeff Burt • 01 Jan 1970

Topics Security Off-Prem On-Prem Software Offbeat Vendor Voice Vendor Voice Resources Nothing like an authentication bypass for your private IPSec network

Cisco patched three security vulnerabilities in its products this week, and said it will leave unpatched a VPN-hijacking flaw that affects four small business routers. Those small-biz routers – the RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction VPN Router, and RV215W Wireless-N VPN Router – have reached their end-of-life (EoL) and the networking vendor is recommending customers upgrade to devices that aren't vulnerable. To give you an idea of the potential ...