DPDK records
16 published records for vendor dpdk.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-190 Integer Overflow or Wraparound4
- CWE-125 Out-of-bounds Read2
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')2
- CWE-254 7PK - Security Features1
- CWE-367 Time-of-check Time-of-use (TOCTOU) Race Condition1
- CWE-400 Uncontrolled Resource Consumption1
The weakness classes this vendor ships most often: where to look.
CWEAll records
16 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2022-2132No exploit | A permissive list of allowed inputs flaw was found in DPDK.dpdk · data plane development kit · CWE-791 | High8.6 | — | 2.2% | Aug 31, 2022 |
35Monitor | CVE-2015-1142857No exploit | On multiple SR-IOV cars it is possible for VF's assigned to guests to send ethernet flow control pause frames via the PF.intel · x710 firmware · CWE-254 | High8.6 | — | 2.1% | Jan 23, 2018 |
35Monitor | CVE-2020-14374No exploit | A flaw was found in dpdk in versions before 18.11.10 and before 19.11.5.dpdk · data plane development kit · CWE-120 | High8.8 | — | 0.4% | Sep 30, 2020 |
31Monitor | CVE-2019-14818No exploit | A flaw was found in all dpdk version 17.x.x before 17.11.8, 16.x.x before 16.11.10, 18.x.x before 18.11.4 and 19.x.x before 19.08.1 where a dpdk · data plane development kit · CWE-401 | High7.5 | — | 2.8% | Nov 14, 2019 |
31Monitor | CVE-2020-10725No exploit | A flaw was found in DPDK version 19.11 and above that allows a malicious guest to cause a segmentation fault of the vhost-user backend applidpdk · data plane development kit · CWE-665 | High7.7 | — | 2.2% | May 20, 2020 |
31Monitor | CVE-2020-14376No exploit | A flaw was found in dpdk in versions before 18.11.10 and before 19.11.5.dpdk · data plane development kit · CWE-120 | High7.8 | — | 0.4% | Sep 30, 2020 |
31Monitor | CVE-2020-14375No exploit | A flaw was found in dpdk in versions before 18.11.10 and before 19.11.5.dpdk · data plane development kit · CWE-367 | High7.8 | — | 0.3% | Sep 30, 2020 |
30Monitor | CVE-2021-3839No exploit | A flaw was found in the vhost library in DPDK.dpdk · data plane development kit · CWE-125 | High7.5 | — | 1.6% | Aug 23, 2022 |
28Monitor | CVE-2020-14377No exploit | A flaw was found in dpdk in versions before 18.11.10 and before 19.11.5.dpdk · data plane development kit · CWE-125 | High7.1 | — | 0.4% | Sep 30, 2020 |
26Monitor | CVE-2020-10723No exploit | A memory corruption issue was found in DPDK versions 17.05 and above.dpdk · data plane development kit · CWE-190 | Medium6.7 | — | 0.4% | May 19, 2020 |
26Monitor | CVE-2020-10722No exploit | A vulnerability was found in DPDK versions 18.05 and above.dpdk · data plane development kit · CWE-190 | Medium6.7 | — | 0.4% | May 19, 2020 |
26Monitor | CVE-2022-0669No exploit | A flaw was found in dpdk.dpdk · data plane development kit · CWE-400 | Medium6.5 | — | 0.3% | Aug 29, 2022 |
24Monitor | CVE-2018-1059No exploit | The DPDK vhost-user interface does not check to verify that all the requested guest physical range is mapped and contiguous when performing dpdk · data plane development kit · CWE-200 | Medium6.1 | — | 0.9% | Apr 24, 2018 |
17Monitor | CVE-2020-10726No exploit | A vulnerability was found in DPDK versions 19.11 and above.dpdk · data plane development kit · CWE-190 | Medium4.4 | — | 0.5% | May 20, 2020 |
17Monitor | CVE-2020-10724No exploit | A vulnerability was found in DPDK versions 18.11 and above.dpdk · data plane development kit · CWE-190 | Medium4.4 | — | 0.4% | May 19, 2020 |
13Monitor | CVE-2020-14378No exploit | An integer underflow in dpdk versions before 18.11.10 and before 19.11.5 in the `move_desc` function can lead to large amounts of CPU cyclesdpdk · data plane development kit · CWE-191 | Low3.3 | — | 0.4% | Sep 30, 2020 |
- CVE-2022-213235Monitor
A permissive list of allowed inputs flaw was found in DPDK.
HighCVSS 8.6No exploitEPSS 2%dpdk · data plane development kitAug 31, 2022
- CVE-2015-114285735Monitor
On multiple SR-IOV cars it is possible for VF's assigned to guests to send ethernet flow control pause frames via the PF.
HighCVSS 8.6No exploitEPSS 2%intel · x710 firmwareJan 23, 2018
- CVE-2020-1437435Monitor
A flaw was found in dpdk in versions before 18.11.10 and before 19.11.5.
HighCVSS 8.8No exploitEPSS 0%dpdk · data plane development kitSep 30, 2020
- CVE-2019-1481831Monitor
A flaw was found in all dpdk version 17.x.x before 17.11.8, 16.x.x before 16.11.10, 18.x.x before 18.11.4 and 19.x.x before 19.08.1 where a
HighCVSS 7.5No exploitEPSS 3%dpdk · data plane development kitNov 14, 2019
- CVE-2020-1072531Monitor
A flaw was found in DPDK version 19.11 and above that allows a malicious guest to cause a segmentation fault of the vhost-user backend appli
HighCVSS 7.7No exploitEPSS 2%dpdk · data plane development kitMay 20, 2020
- CVE-2020-1437631Monitor
A flaw was found in dpdk in versions before 18.11.10 and before 19.11.5.
HighCVSS 7.8No exploitEPSS 0%dpdk · data plane development kitSep 30, 2020
- CVE-2020-1437531Monitor
A flaw was found in dpdk in versions before 18.11.10 and before 19.11.5.
HighCVSS 7.8No exploitEPSS 0%dpdk · data plane development kitSep 30, 2020
- CVE-2021-383930Monitor
A flaw was found in the vhost library in DPDK.
HighCVSS 7.5No exploitEPSS 2%dpdk · data plane development kitAug 23, 2022
- CVE-2020-1437728Monitor
A flaw was found in dpdk in versions before 18.11.10 and before 19.11.5.
HighCVSS 7.1No exploitEPSS 0%dpdk · data plane development kitSep 30, 2020
- CVE-2020-1072326Monitor
A memory corruption issue was found in DPDK versions 17.05 and above.
MediumCVSS 6.7No exploitEPSS 0%dpdk · data plane development kitMay 19, 2020
- CVE-2020-1072226Monitor
A vulnerability was found in DPDK versions 18.05 and above.
MediumCVSS 6.7No exploitEPSS 0%dpdk · data plane development kitMay 19, 2020
- CVE-2022-066926Monitor
A flaw was found in dpdk.
MediumCVSS 6.5No exploitEPSS 0%dpdk · data plane development kitAug 29, 2022
- CVE-2018-105924Monitor
The DPDK vhost-user interface does not check to verify that all the requested guest physical range is mapped and contiguous when performing
MediumCVSS 6.1No exploitEPSS 1%dpdk · data plane development kitApr 24, 2018
- CVE-2020-1072617Monitor
A vulnerability was found in DPDK versions 19.11 and above.
MediumCVSS 4.4No exploitEPSS 0%dpdk · data plane development kitMay 20, 2020
- CVE-2020-1072417Monitor
A vulnerability was found in DPDK versions 18.11 and above.
MediumCVSS 4.4No exploitEPSS 0%dpdk · data plane development kitMay 19, 2020
- CVE-2020-1437813Monitor
An integer underflow in dpdk versions before 18.11.10 and before 19.11.5 in the `move_desc` function can lead to large amounts of CPU cycles
LowCVSS 3.3No exploitEPSS 0%dpdk · data plane development kitSep 30, 2020