GHSA-wggc-2fwv-g783HighCVSS 5.9
The VeloCloud Edge and Gateway exhibit an out-of-bounds write vulnerability when processing...
🔗 CVE IDs covered (1)
📋 Description
The VeloCloud Edge and Gateway exhibit an out-of-bounds write vulnerability when processing tunneled IP fragments between authenticated overlay neighbors. This vulnerability impacts the VeloCloud VCMP tunnel protocol only.
A successful exploit can cause the affected process to terminate and restart, leading to a temporary disruption of traffic. Hosts on the internet that are unauthenticated and unable to form an overlay peer relationship can not trigger the vulnerable logic.