Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Containers
  • Support Cases
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Containers
  • Support Cases
  • Products & Services

    Products

    Support

    • Production Support
    • Development Support
    • Product Life Cycles

    Services

    • Consulting
    • Technical Account Management
    • Training & Certifications

    Documentation

    • Red Hat Enterprise Linux
    • Red Hat JBoss Enterprise Application Platform
    • Red Hat OpenStack Platform
    • Red Hat OpenShift Container Platform
    All Documentation

    Ecosystem Catalog

    • Red Hat Partner Ecosystem
    • Partner Resources
  • Tools

    Tools

    • Troubleshoot a product issue
    • Packages
    • Errata

    Customer Portal Labs

    • Configuration
    • Deployment
    • Security
    • Troubleshoot
    All labs

    Red Hat Insights

    Increase visibility into IT operations to detect and resolve technical issues before they impact your business.

    Learn More
    Go to Insights
  • Security

    Red Hat Product Security Center

    Engage with our Red Hat Product Security team, access security updates, and ensure your environments are not exposed to any known security vulnerabilities.

    Product Security Center

    Security Updates

    • Security Advisories
    • Red Hat CVE Database
    • Security Labs

    Keep your systems secure with Red Hat's specialized responses to security vulnerabilities.

    View Responses

    Resources

    • Security Blog
    • Security Measurement
    • Severity Ratings
    • Backporting Policies
    • Product Signing (GPG) Keys
  • Community

    Customer Portal Community

    • Discussions
    • Private Groups
    Community Activity

    Customer Events

    • Red Hat Convergence
    • Red Hat Summit

    Stories

    • Red Hat Subscription Value
    • You Asked. We Acted.
    • Open Source Communities
Or troubleshoot an issue.

Select Your Language

  • English
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Virtualization
  • Red Hat Identity Management
  • Red Hat Directory Server
  • Red Hat Certificate System
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Update Infrastructure
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat CloudForms
  • Red Hat OpenStack Platform
  • Red Hat OpenShift Container Platform
  • Red Hat OpenShift Data Science
  • Red Hat OpenShift Online
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat CodeReady Workspaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat Single Sign On
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Thorntail
  • Red Hat build of Eclipse Vert.x
  • Red Hat build of OpenJDK
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Integration
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
  • Red Hat JBoss Data Virtualization
  • Red Hat Process Automation
  • Red Hat Process Automation Manager
  • Red Hat Decision Manager
All Products
Red Hat Product Errata RHSA-2020:0165 - Security Advisory
Issued:
2020-01-21
Updated:
2020-01-21

RHSA-2020:0165 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: openvswitch security and bug fix update

Type/Severity

Security Advisory: Moderate

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for openvswitch is now available for Fast Datapath for RHEL 7.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Open vSwitch provides standard network bridging functions and support for the OpenFlow protocol for remote per-flow control of traffic.

Security Fix(es):

  • dpdk: possible memory leak leads to denial of service (CVE-2019-14818)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Bug Fix(es):

  • Fast datapath guaranteed bandwidth for SR-IOV, OVS and OVS-DPDK (Test-only) (BZ#1546429)
  • [ovs2.9] SSL connections drops are constantly logged in ovsdb-server-nb.log (BZ#1563574)
  • [FD-7 hotfix] Connectivity issue across VXLAN tunnels in OVS-DPDK after reboot of hypervisor - problem clears up after restarting openvswitch (BZ#1758824)

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Fast Datapath 7 x86_64
  • Red Hat Virtualization - Extended Update Support 4.2 for RHEL 7.6 x86_64
  • Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 7 ppc64le
  • Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 7 s390x

Fixes

  • BZ - 1546429 - Fast datapath guaranteed bandwidth for SR-IOV, OVS and OVS-DPDK (Test-only)
  • BZ - 1563574 - [ovs2.9] SSL connections drops are constantly logged in ovsdb-server-nb.log
  • BZ - 1737327 - CVE-2019-14818 dpdk: possible memory leak leads to denial of service
  • BZ - 1758824 - [FD-7 hotfix] Connectivity issue across VXLAN tunnels in OVS-DPDK after reboot of hypervisor - problem clears up after restarting openvswitch

CVEs

  • CVE-2019-14818

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Fast Datapath 7

SRPM
openvswitch-2.9.0-124.el7fdp.src.rpm SHA-256: d9b3fe895eb4044cba07ae9442d10792e703bb24128ea029769deaa780ca4aa7
x86_64
openvswitch-2.9.0-124.el7fdp.x86_64.rpm SHA-256: 0d83b6fd582e57cfbe7a8030dd860ca7e9e484f1a4de2cf78519286c3a6de9d2
openvswitch-debuginfo-2.9.0-124.el7fdp.x86_64.rpm SHA-256: 082cb29101bcd467169ea9f762f8f2e2109bbd151e533f95acf86b75fda38bb8
openvswitch-devel-2.9.0-124.el7fdp.x86_64.rpm SHA-256: 7f8a8586611817caa14418dda48f746f1aff207c066d0c9eb899ff8585d9479f
openvswitch-ovn-central-2.9.0-124.el7fdp.x86_64.rpm SHA-256: 0a5222193401e2a15c8ad3f6bca4f18d6a40779d93ae1062b7efb4c813adaeef
openvswitch-ovn-common-2.9.0-124.el7fdp.x86_64.rpm SHA-256: 50eb78e4ecf52695b81523e5e70a19a5a68007143401797e9eb96654c3b8ec03
openvswitch-ovn-host-2.9.0-124.el7fdp.x86_64.rpm SHA-256: 3957558dd2fbf6b7f4058072a5d3cb754c4d8b7e172971616e7ea3552a0cdaeb
openvswitch-ovn-vtep-2.9.0-124.el7fdp.x86_64.rpm SHA-256: aaeb3440e6f8def0ef161740b3540fc301442d31ac410e7af5a962b874dc9d54
openvswitch-test-2.9.0-124.el7fdp.noarch.rpm SHA-256: a6abca39893b4063bd86b3fea167b22635ad6e1db340d519bec1bd0515745956
python-openvswitch-2.9.0-124.el7fdp.x86_64.rpm SHA-256: 496b27e2af13df454c52e8748c5791a1abca892fc35a07cc942d49d4af4d60c5

Red Hat Virtualization - Extended Update Support 4.2 for RHEL 7.6

SRPM
openvswitch-2.9.0-124.el7fdp.src.rpm SHA-256: d9b3fe895eb4044cba07ae9442d10792e703bb24128ea029769deaa780ca4aa7
x86_64
openvswitch-2.9.0-124.el7fdp.x86_64.rpm SHA-256: 0d83b6fd582e57cfbe7a8030dd860ca7e9e484f1a4de2cf78519286c3a6de9d2
openvswitch-debuginfo-2.9.0-124.el7fdp.x86_64.rpm SHA-256: 082cb29101bcd467169ea9f762f8f2e2109bbd151e533f95acf86b75fda38bb8
openvswitch-devel-2.9.0-124.el7fdp.x86_64.rpm SHA-256: 7f8a8586611817caa14418dda48f746f1aff207c066d0c9eb899ff8585d9479f
openvswitch-ovn-common-2.9.0-124.el7fdp.x86_64.rpm SHA-256: 50eb78e4ecf52695b81523e5e70a19a5a68007143401797e9eb96654c3b8ec03
openvswitch-ovn-host-2.9.0-124.el7fdp.x86_64.rpm SHA-256: 3957558dd2fbf6b7f4058072a5d3cb754c4d8b7e172971616e7ea3552a0cdaeb
python-openvswitch-2.9.0-124.el7fdp.x86_64.rpm SHA-256: 496b27e2af13df454c52e8748c5791a1abca892fc35a07cc942d49d4af4d60c5

Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 7

SRPM
openvswitch-2.9.0-124.el7fdp.src.rpm SHA-256: d9b3fe895eb4044cba07ae9442d10792e703bb24128ea029769deaa780ca4aa7
ppc64le
openvswitch-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: a2c20b85427169d12c0e1a6d7cc31027cfb5f0ef3e226971ae8d8d060862906c
openvswitch-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: a2c20b85427169d12c0e1a6d7cc31027cfb5f0ef3e226971ae8d8d060862906c
openvswitch-debuginfo-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: 9aac64500b7c4e16ad6c702264328f1e454f71fab2d7475e2dbdc2616e6ddc1b
openvswitch-debuginfo-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: 9aac64500b7c4e16ad6c702264328f1e454f71fab2d7475e2dbdc2616e6ddc1b
openvswitch-devel-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: fbb28d1df3e6a0ad24f82e9b5404d699ba295750dd8b43302384134650b8b24a
openvswitch-devel-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: fbb28d1df3e6a0ad24f82e9b5404d699ba295750dd8b43302384134650b8b24a
openvswitch-ovn-central-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: 6c80c60eea0c118480b49b5fec30ccbab23f6e8eddaaf5533826bc754caad934
openvswitch-ovn-central-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: 6c80c60eea0c118480b49b5fec30ccbab23f6e8eddaaf5533826bc754caad934
openvswitch-ovn-common-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: 2ec5e0b20904c4e897ad70b2ac294d174fa5cd2f76aa1018e6e2837409b0fdbe
openvswitch-ovn-common-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: 2ec5e0b20904c4e897ad70b2ac294d174fa5cd2f76aa1018e6e2837409b0fdbe
openvswitch-ovn-host-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: c5d91cbdb255e4fada1bf41fe6993a453ede1efe0cb467035beb2a2e7ea88d78
openvswitch-ovn-host-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: c5d91cbdb255e4fada1bf41fe6993a453ede1efe0cb467035beb2a2e7ea88d78
openvswitch-ovn-vtep-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: 54ed86a6bd08eb75cc05fd285c9fe023b418136c0baa3bf0ebd1ac22d8522b92
openvswitch-ovn-vtep-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: 54ed86a6bd08eb75cc05fd285c9fe023b418136c0baa3bf0ebd1ac22d8522b92
openvswitch-test-2.9.0-124.el7fdp.noarch.rpm SHA-256: a6abca39893b4063bd86b3fea167b22635ad6e1db340d519bec1bd0515745956
openvswitch-test-2.9.0-124.el7fdp.noarch.rpm SHA-256: a6abca39893b4063bd86b3fea167b22635ad6e1db340d519bec1bd0515745956
python-openvswitch-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: 93be0cd24f26042b26d3eac3e2e3e6134d877b05a79b5247623a3b81a5a5c6ac
python-openvswitch-2.9.0-124.el7fdp.ppc64le.rpm SHA-256: 93be0cd24f26042b26d3eac3e2e3e6134d877b05a79b5247623a3b81a5a5c6ac

Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 7

SRPM
openvswitch-2.9.0-124.el7fdp.src.rpm SHA-256: d9b3fe895eb4044cba07ae9442d10792e703bb24128ea029769deaa780ca4aa7
s390x
openvswitch-2.9.0-124.el7fdp.s390x.rpm SHA-256: a7fe45cad1c2744fead8085012e6f3bc9f45c92fc50ed491137ef063b55546fc
openvswitch-debuginfo-2.9.0-124.el7fdp.s390x.rpm SHA-256: d9c42fe944e8b25e342f20b4251e89eb18a1395fa68216cdf84b0a51378097fb
openvswitch-devel-2.9.0-124.el7fdp.s390x.rpm SHA-256: 361b58dd015a361a63773138c48eecf47d4d3abd31980b611c8f99a6ec0be86c
openvswitch-ovn-central-2.9.0-124.el7fdp.s390x.rpm SHA-256: 62822c469d57a37b65cd814b0d2acf72e8b9dfc7ffb0a182f5bf2cda16366ea5
openvswitch-ovn-common-2.9.0-124.el7fdp.s390x.rpm SHA-256: 592709cadbccedbe43f7edcebf9679205c1a4717b1886fb9ee771f385d5e58c7
openvswitch-ovn-host-2.9.0-124.el7fdp.s390x.rpm SHA-256: 650c9f11c654eefd3770422a5f32ef196ed4e9edb33eafb01fce18fa3f097e3c
openvswitch-ovn-vtep-2.9.0-124.el7fdp.s390x.rpm SHA-256: 018783415fa5797d06e0eb3d36b795e86462815cb70c0b970eece6f71cce6b19
openvswitch-test-2.9.0-124.el7fdp.noarch.rpm SHA-256: a6abca39893b4063bd86b3fea167b22635ad6e1db340d519bec1bd0515745956
python-openvswitch-2.9.0-124.el7fdp.s390x.rpm SHA-256: 1b2f07276c67d5cbddcd95e126f400626263398ef1477d06599f52316d3889fd

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

About

  • Red Hat Subscription Value
  • About Red Hat
  • Red Hat Jobs
Copyright © 2022 Red Hat, Inc.
  • Privacy Statement
  • Customer Portal Terms of Use
  • All Policies and Guidelines
Red Hat Summit
Twitter