CVE-2017-9265: openvswitch: Buffer over-read while parsing the group mod OpenFlow message

Severity: Critical

CVSS Score: 9.8

In Open vSwitch (OvS) v2.7.0, there is a buffer over-read while parsing the group mod OpenFlow message sent from the controller in `lib/ofp-util.c` in the function `ofputil_pull_ofp15_group_mod`.