- Issued:
- 2021-05-20
- Updated:
- 2021-05-20
RHSA-2021:2077 - Security Advisory
Synopsis
Important: openvswitch security update
Type/Severity
Security Advisory: Important
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
Topic
An update for openvswitch is now available in Fast Datapath for Red Hat
Enterprise Linux 7.
Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Description
Open vSwitch provides standard network bridging functions and support for
the OpenFlow protocol for remote per-flow control of traffic.
Security Fix(es):
- lldpd: buffer overflow in the lldp_decode function in daemon/protocols/lldp.c
(CVE-2015-8011)
- openvswitch: limitation in the OVS packet parsing in userspace leads to DoS
(CVE-2020-35498)
- lldp/openvswitch: denial of service via externally triggered memory leak
(CVE-2020-27827)
Affected Products
- Red Hat Enterprise Linux Fast Datapath 7 x86_64
- Red Hat Virtualization - Extended Update Support 4.2 for RHEL 7.6 x86_64
- Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 7 ppc64le
- Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 7 s390x
Fixes
- BZ - 1896536 - CVE-2015-8011 lldpd: buffer overflow in the lldp_decode function in daemon/protocols/lldp.c
- BZ - 1908845 - CVE-2020-35498 openvswitch: limitation in the OVS packet parsing in userspace leads to DoS
- BZ - 1921438 - CVE-2020-27827 lldp/openvswitch: denial of service via externally triggered memory leak
- BZ - 1950032 - Update openvswitch to 2.9.9
Red Hat Enterprise Linux Fast Datapath 7
SRPM | |
---|---|
openvswitch-2.9.9-1.el7fdp.src.rpm | SHA-256: ea8ea0adf244d189febafcd3018f927bceed26384f1c8ab8abe53b73e8ab2e33 |
x86_64 | |
openvswitch-2.9.9-1.el7fdp.x86_64.rpm | SHA-256: 0256baa4c4490ad6caed0f4adb5cd5b3befd80c06341327eaded547f6f01b6b6 |
openvswitch-debuginfo-2.9.9-1.el7fdp.x86_64.rpm | SHA-256: 6ee543d9b8882e19eb2b9085e99bb1092979d145dddffe8d964ccd03b8395b85 |
openvswitch-devel-2.9.9-1.el7fdp.x86_64.rpm | SHA-256: cbf27e6ac9f86757649873680b3b25693e03876c0d530fe71d94cc0b07629d53 |
openvswitch-test-2.9.9-1.el7fdp.noarch.rpm | SHA-256: c5d5006535f547686537a06bc9f729d91ed0289b892a6ab95150d66cedd2b03e |
python-openvswitch-2.9.9-1.el7fdp.x86_64.rpm | SHA-256: fe192baa730843b066505b54618ad75f9df3ea87ef954ac7b8c626b1e2b851f2 |
Red Hat Virtualization - Extended Update Support 4.2 for RHEL 7.6
SRPM | |
---|---|
openvswitch-2.9.9-1.el7fdp.src.rpm | SHA-256: ea8ea0adf244d189febafcd3018f927bceed26384f1c8ab8abe53b73e8ab2e33 |
x86_64 | |
openvswitch-2.9.9-1.el7fdp.x86_64.rpm | SHA-256: 0256baa4c4490ad6caed0f4adb5cd5b3befd80c06341327eaded547f6f01b6b6 |
openvswitch-debuginfo-2.9.9-1.el7fdp.x86_64.rpm | SHA-256: 6ee543d9b8882e19eb2b9085e99bb1092979d145dddffe8d964ccd03b8395b85 |
openvswitch-devel-2.9.9-1.el7fdp.x86_64.rpm | SHA-256: cbf27e6ac9f86757649873680b3b25693e03876c0d530fe71d94cc0b07629d53 |
python-openvswitch-2.9.9-1.el7fdp.x86_64.rpm | SHA-256: fe192baa730843b066505b54618ad75f9df3ea87ef954ac7b8c626b1e2b851f2 |
Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 7
SRPM | |
---|---|
openvswitch-2.9.9-1.el7fdp.src.rpm | SHA-256: ea8ea0adf244d189febafcd3018f927bceed26384f1c8ab8abe53b73e8ab2e33 |
ppc64le | |
openvswitch-2.9.9-1.el7fdp.ppc64le.rpm | SHA-256: e303b33cc58793820dea890f3226495e716a9da2e51bccad7d00aaa77b761201 |
openvswitch-2.9.9-1.el7fdp.ppc64le.rpm | SHA-256: e303b33cc58793820dea890f3226495e716a9da2e51bccad7d00aaa77b761201 |
openvswitch-debuginfo-2.9.9-1.el7fdp.ppc64le.rpm | SHA-256: 9a721840ad32961d6e95dc54e5eb8853dfd0bc2c425b4838fbadac41e35312c1 |
openvswitch-debuginfo-2.9.9-1.el7fdp.ppc64le.rpm | SHA-256: 9a721840ad32961d6e95dc54e5eb8853dfd0bc2c425b4838fbadac41e35312c1 |
openvswitch-devel-2.9.9-1.el7fdp.ppc64le.rpm | SHA-256: 753c7f5598c8d72118b6dfad1ecd4ba4cc2e3e5282d3163e9f70563fe97db9c6 |
openvswitch-devel-2.9.9-1.el7fdp.ppc64le.rpm | SHA-256: 753c7f5598c8d72118b6dfad1ecd4ba4cc2e3e5282d3163e9f70563fe97db9c6 |
openvswitch-test-2.9.9-1.el7fdp.noarch.rpm | SHA-256: c5d5006535f547686537a06bc9f729d91ed0289b892a6ab95150d66cedd2b03e |
openvswitch-test-2.9.9-1.el7fdp.noarch.rpm | SHA-256: c5d5006535f547686537a06bc9f729d91ed0289b892a6ab95150d66cedd2b03e |
python-openvswitch-2.9.9-1.el7fdp.ppc64le.rpm | SHA-256: d730c4f0d50b1c9254066ca1c0dc28cb3c992eef9d1325426ba33bff962aaf35 |
python-openvswitch-2.9.9-1.el7fdp.ppc64le.rpm | SHA-256: d730c4f0d50b1c9254066ca1c0dc28cb3c992eef9d1325426ba33bff962aaf35 |
Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 7
SRPM | |
---|---|
openvswitch-2.9.9-1.el7fdp.src.rpm | SHA-256: ea8ea0adf244d189febafcd3018f927bceed26384f1c8ab8abe53b73e8ab2e33 |
s390x | |
openvswitch-2.9.9-1.el7fdp.s390x.rpm | SHA-256: 605a0f364bb5fdf73a658bde5ee6799b9216c955cbc088d03dea35f165e955c3 |
openvswitch-debuginfo-2.9.9-1.el7fdp.s390x.rpm | SHA-256: ae87a0ce68905d14bff9b164c9b457fe5fc0ea859741d91112ab2e0a12c397dc |
openvswitch-devel-2.9.9-1.el7fdp.s390x.rpm | SHA-256: 6422d88b616e927122f8b05916f81c6f6170a487ac37dbabb11d445a51cc6b11 |
openvswitch-test-2.9.9-1.el7fdp.noarch.rpm | SHA-256: c5d5006535f547686537a06bc9f729d91ed0289b892a6ab95150d66cedd2b03e |
python-openvswitch-2.9.9-1.el7fdp.s390x.rpm | SHA-256: 26dbcae6b7c80a71003c0c219dcf730449b439ba9cdebb6a04ee1661806f4159 |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.