MEDIUM 5.8 Microsoft

CVE-2019-25076

The TSS (Tuple Space Search) algorithm in Open vSwitch 2.x through 2.17.2 and 3.0.0 allows remote attackers to cause a denial of service (delays of legitimate traffic) via crafted packet data that requires excessive evaluation time within the packet classification algorithm for the MegaFlow cache aka a Tuple Space Explosion (TSE) attack.

Microsoft Security Update 2022-Sep: The TSS (Tuple Space Search) algorithm in Open vSwitch 2.x through 2.17.2 and 3.0.0 allows remote attackers to cause a denial of service (delays of legitimate traffic) via crafted packet data that requires excessive evaluation time within the packet classification algorithm for the MegaFlow cache aka a Tuple Space Explosion (TSE) attack.

Affected Products

References

Published: 2022-09-13 · Source: Microsoft · Feed updated: 2026-08-14
This medium severity vulnerability with a CVSS score of 5.8 was published on 2022-09-13 via Microsoft. Affected: cm1 openvswitch 2.15.7-1 on CBL Mariner 1.0, cbl2 openvswitch 2.17.5-1 on CBL Mariner 2.0.
vulnfeed aggregates 10939 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.