dpdk: DoS when a Vhost header crosses more than two descriptors and exhausts all mbufs
Published Aug 31, 2022
8.6
HIGHCVSS 3.1
EPSS 2.24%
Description
A permissive list of allowed inputs flaw was found in DPDK. This issue allows a remote attacker to cause a denial of service triggered by sending a crafted Vhost header to DPDK.
Affected products
- Vendor n/a Product Dpdk Defaultn/a
- Version dpdk 21.11, dpdk 20.11, dpdk 19.11StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| n/a | Dpdk | n/a |
|
Configuration 1
- < 19.11
- ≥ 20.0 · < 20.11
- ≥ 21.0 · < 21.11
Configuration 2
- 36
Configuration 3
- 10.0
Configuration 4
- 7.0
- 8.0
- 9.0
- 4.0
- 13.0
- 4.0
- 7.0
- 8.0
- 9.0
No data.
Fast Datapath for Red Hat Enterprise Linux 7
openvswitch2.11-0:2.11.3-96.2.el7fdp
Fixed · RHSA-2022:6850
Fast Datapath for Red Hat Enterprise Linux 8
openvswitch2.13-0:2.13.0-193.2.el8fdp
Fixed · RHSA-2022:6384
Fast Datapath for Red Hat Enterprise Linux 8
openvswitch2.15-0:2.15.0-113.2.el8fdp
Fixed · RHSA-2022:6385
Fast Datapath for Red Hat Enterprise Linux 8
openvswitch2.16-0:2.16.0-89.2.el8fdp
Fixed · RHSA-2022:6382
Fast Datapath for Red Hat Enterprise Linux 8
openvswitch2.17-0:2.17.0-37.3.el8fdp
Fixed · RHSA-2022:6383
Fast Datapath for Red Hat Enterprise Linux 9
openvswitch2.17-0:2.17.0-32.3.el9fdp
Fixed · RHSA-2022:6386
Red Hat Enterprise Linux 7 Extras
dpdk-0:18.11.8-2.el7_9
Fixed · RHSA-2023:0167
Red Hat Enterprise Linux 8
dpdk-0:21.11-2.el8_7
Fixed · RHSA-2023:0171
Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions
dpdk-0:18.11.2-5.el8_1
Fixed · RHSA-2023:0168
Red Hat Enterprise Linux 8.2 Advanced Update Support
dpdk-0:19.11-6.el8_2
Fixed · RHSA-2023:0166
Red Hat Enterprise Linux 8.2 Telecommunications Update Service
dpdk-0:19.11-6.el8_2
Fixed · RHSA-2023:0166
Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions
dpdk-0:19.11-6.el8_2
Fixed · RHSA-2023:0166
Red Hat Enterprise Linux 8.4 Extended Update Support
dpdk-0:20.11-4.el8_4
Fixed · RHSA-2023:0169
Red Hat Enterprise Linux 8.6 Extended Update Support
dpdk-0:21.11-2.el8_6
Fixed · RHSA-2023:0170
Red Hat Enterprise Linux 9
dpdk-2:21.11.2-1.el9_1
Fixed · RHSA-2022:8263
Red Hat Enterprise Linux 9.0 Extended Update Support
dpdk-2:21.11-2.el9_0
Fixed · RHSA-2023:0172
Red Hat OpenStack Platform 13.0 - ELS
openvswitch2.11-0:2.11.3-96.2.el7fdp
Fixed · RHSA-2022:7268
Red Hat Virtualization 4 for Red Hat Enterprise Linux 8
redhat-virtualization-host-0:4.5.2-202209140405_8.6
Fixed · RHSA-2022:6551
Fast Datapath for RHEL 7
openvswitch
Not affected
Fast Datapath for RHEL 7
openvswitch2.10
Not affected
Fast Datapath for RHEL 7
openvswitch2.12
Affected
Fast Datapath for RHEL 8
openvswitch2.12
Affected
Red Hat Ceph Storage 3
ceph
Not affected
Red Hat Ceph Storage 4
ceph
Not affected
Red Hat OpenShift Container Platform 4
openvswitch2.13
Will not fix
Red Hat OpenShift Container Platform 4
openvswitch2.15
Will not fix
Red Hat OpenShift Container Platform 4
openvswitch2.16
Will not fix
Red Hat OpenStack Platform 13 (Queens)
rhosp-openvswitch
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Fast Datapath for Red Hat Enterprise Linux 7 | openvswitch2.11-0:2.11.3-96.2.el7fdp | Fixed | RHSA-2022:6850 |
| Fast Datapath for Red Hat Enterprise Linux 8 | openvswitch2.13-0:2.13.0-193.2.el8fdp | Fixed | RHSA-2022:6384 |
| Fast Datapath for Red Hat Enterprise Linux 8 | openvswitch2.15-0:2.15.0-113.2.el8fdp | Fixed | RHSA-2022:6385 |
| Fast Datapath for Red Hat Enterprise Linux 8 | openvswitch2.16-0:2.16.0-89.2.el8fdp | Fixed | RHSA-2022:6382 |
| Fast Datapath for Red Hat Enterprise Linux 8 | openvswitch2.17-0:2.17.0-37.3.el8fdp | Fixed | RHSA-2022:6383 |
| Fast Datapath for Red Hat Enterprise Linux 9 | openvswitch2.17-0:2.17.0-32.3.el9fdp | Fixed | RHSA-2022:6386 |
| Red Hat Enterprise Linux 7 Extras | dpdk-0:18.11.8-2.el7_9 | Fixed | RHSA-2023:0167 |
| Red Hat Enterprise Linux 8 | dpdk-0:21.11-2.el8_7 | Fixed | RHSA-2023:0171 |
| Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions | dpdk-0:18.11.2-5.el8_1 | Fixed | RHSA-2023:0168 |
| Red Hat Enterprise Linux 8.2 Advanced Update Support | dpdk-0:19.11-6.el8_2 | Fixed | RHSA-2023:0166 |
| Red Hat Enterprise Linux 8.2 Telecommunications Update Service | dpdk-0:19.11-6.el8_2 | Fixed | RHSA-2023:0166 |
| Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions | dpdk-0:19.11-6.el8_2 | Fixed | RHSA-2023:0166 |
| Red Hat Enterprise Linux 8.4 Extended Update Support | dpdk-0:20.11-4.el8_4 | Fixed | RHSA-2023:0169 |
| Red Hat Enterprise Linux 8.6 Extended Update Support | dpdk-0:21.11-2.el8_6 | Fixed | RHSA-2023:0170 |
| Red Hat Enterprise Linux 9 | dpdk-2:21.11.2-1.el9_1 | Fixed | RHSA-2022:8263 |
| Red Hat Enterprise Linux 9.0 Extended Update Support | dpdk-2:21.11-2.el9_0 | Fixed | RHSA-2023:0172 |
| Red Hat OpenStack Platform 13.0 - ELS | openvswitch2.11-0:2.11.3-96.2.el7fdp | Fixed | RHSA-2022:7268 |
| Red Hat Virtualization 4 for Red Hat Enterprise Linux 8 | redhat-virtualization-host-0:4.5.2-202209140405_8.6 | Fixed | RHSA-2022:6551 |
| Fast Datapath for RHEL 7 | openvswitch | Not affected | n/a |
| Fast Datapath for RHEL 7 | openvswitch2.10 | Not affected | n/a |
| Fast Datapath for RHEL 7 | openvswitch2.12 | Affected | n/a |
| Fast Datapath for RHEL 8 | openvswitch2.12 | Affected | n/a |
| Red Hat Ceph Storage 3 | ceph | Not affected | n/a |
| Red Hat Ceph Storage 4 | ceph | Not affected | n/a |
| Red Hat OpenShift Container Platform 4 | openvswitch2.13 | Will not fix | n/a |
| Red Hat OpenShift Container Platform 4 | openvswitch2.15 | Will not fix | n/a |
| Red Hat OpenShift Container Platform 4 | openvswitch2.16 | Will not fix | n/a |
| Red Hat OpenStack Platform 13 (Queens) | rhosp-openvswitch | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
In OpenShift Container Platform (OCP) the openvswitch rpm package is consumed from the RHEL Fast Datapath repositories, hence OCP openvswitch components are marked as "Will not fix".
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
No CVSS v3.0 score for this CVE.
No CVSS v2.0 score for this CVE.
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (16 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 2.24% (0.02240) | 82.21th | v5 (v2026.06.15) |
| Jun 15, 2026 | 1.72% (0.01723) | 74.46th | v5 (v2026.06.15) |
| Mar 17, 2025 | 0.40% (0.00400) | 58.56th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.34% (0.00341) | 72.34th | v3 (v2023.03.01) |
| Apr 21, 2024 | 0.29% (0.00285) | 68.43th | v3 (v2023.03.01) |
| Apr 7, 2024 | 0.24% (0.00237) | 61.22th | v3 (v2023.03.01) |
| Mar 23, 2024 | 0.23% (0.00232) | 60.61th | v3 (v2023.03.01) |
| Feb 11, 2024 | 0.23% (0.00227) | 59.94th | v3 (v2023.03.01) |
| Oct 3, 2023 | 0.21% (0.00205) | 58.03th | v3 (v2023.03.01) |
| Sep 7, 2023 | 0.18% (0.00182) | 54.91th | v3 (v2023.03.01) |
| Aug 1, 2023 | 0.10% (0.00105) | 41.90th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.09% (0.00091) | 37.64th | v3 (v2023.03.01) |
| Mar 6, 2023 | 1.14% (0.01136) | 59.45th | v2 (v2022.01.01) |
| Sep 7, 2022 | 1.14% (0.01136) | 57.96th | v2 (v2022.01.01) |
| Sep 2, 2022 | 1.06% (0.01061) | 51.00th | v2 (v2022.01.01) |
| Sep 1, 2022 | 1.05% (0.01055) | 50.26th | v2 (v2022.01.01) |
References (6)
- https://access.redhat.com/security/cve/CVE-2022-2132 Vendor Advisory
- https://bugs.dpdk.org/show_bug.cgi?id=1031 x_refsource_MISCExploitIssue TrackingPatchVendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2099475 x_refsource_MISCExploitIssue TrackingThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2022/09/msg00000.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2022-2132
- https://www.cve.org/CVERecord?id=CVE-2022-2132
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2022-2132 | Vendor Advisory | |
| https://bugs.dpdk.org/show_bug.cgi?id=1031 | x_refsource_MISCExploitIssue TrackingPatchVendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2099475 | x_refsource_MISCExploitIssue TrackingThird Party Advisory | |
| https://lists.debian.org/debian-lts-announce/2022/09/msg00000.html | mailing-listx_refsource_MLISTMailing ListThird Party Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2022-2132 | ||
| https://www.cve.org/CVERecord?id=CVE-2022-2132 |
Change history (0)
No recorded changes yet.