Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:1234 - Security Advisory
Issued:
2024-03-07
Updated:
2024-03-07

RHSA-2024:1234 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: openvswitch2.17 security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for openvswitch2.17 is now available for Fast Datapath for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Open vSwitch provides standard network bridging functions and support for the OpenFlow protocol for remote per-flow control of traffic.

Security Fix(es):

  • openvswsitch: ovs-vswitch fails to recover after malformed geneve metadata packet (CVE-2023-3966)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Fast Datapath 8 x86_64
  • Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 8 ppc64le
  • Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 8 s390x
  • Red Hat Enterprise Linux Fast Datapath (for RHEL for ARM 64) 8 aarch64

Fixes

  • BZ - 2178363 - CVE-2023-3966 openvswsitch: ovs-vswitch fails to recover after malformed geneve metadata packet
  • FDP-308 - [24.B RHEL-8] Fast Datapath Release
  • FD-3267 - CVE-2023-3966 openvswitch2.17: openvswsitch: ovs-vswitch fails to recover after malformed geneve metadata packet [fdp-el8-ovs]

CVEs

  • CVE-2023-3966
  • CVE-2023-5366

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Fast Datapath 8

SRPM
openvswitch2.17-2.17.0-148.el8fdp.src.rpm SHA-256: edb35c7a7ecf323218515190be7656c7fbc3b8e1f21f1ac106e26155fe2466e9
x86_64
network-scripts-openvswitch2.17-2.17.0-148.el8fdp.x86_64.rpm SHA-256: e3608d6e32907223bc48d39629c7fca4b2c378b4d28aa09eb0600b1493fea257
openvswitch2.17-2.17.0-148.el8fdp.x86_64.rpm SHA-256: 034a7fba296b3afa42d53695c047f76f8e3fa3c7604d13c29638b1593931de00
openvswitch2.17-debuginfo-2.17.0-148.el8fdp.x86_64.rpm SHA-256: 11f50fb82092f46c0d356e246cefdc028681134bf402c6db3f6e31a1275e0bcd
openvswitch2.17-debugsource-2.17.0-148.el8fdp.x86_64.rpm SHA-256: 69cd9bf6c42074915ee470d505f1eecc4fe3e95f2244c54603c6a5d59b8c9e00
openvswitch2.17-devel-2.17.0-148.el8fdp.x86_64.rpm SHA-256: ff932c956407ce0ba00bdefe77b338ee14fa3272187a5034dd72a86d4f51658e
openvswitch2.17-ipsec-2.17.0-148.el8fdp.x86_64.rpm SHA-256: e691d6cd434da9471352aa80f20ec6f57455175ec6ac0852bbf9300fe8bfecab
openvswitch2.17-test-2.17.0-148.el8fdp.noarch.rpm SHA-256: f4a00b71615a02fb44bee263a1b2e7fab549b189cdc350fba63701f503f188ee
python3-openvswitch2.17-2.17.0-148.el8fdp.x86_64.rpm SHA-256: b291f12f6cced58956452d28fe15f9148361cdfa92c157dc7553104c4843287d
python3-openvswitch2.17-debuginfo-2.17.0-148.el8fdp.x86_64.rpm SHA-256: 2809080d281831f1dd8a5cf797d78207096bdfe4af2294ef288309da3055d6e6

Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 8

SRPM
openvswitch2.17-2.17.0-148.el8fdp.src.rpm SHA-256: edb35c7a7ecf323218515190be7656c7fbc3b8e1f21f1ac106e26155fe2466e9
ppc64le
network-scripts-openvswitch2.17-2.17.0-148.el8fdp.ppc64le.rpm SHA-256: feeee04ce7b76c836d4ed9f71fc2f7c53aceb0d2c385d08d526ee338a5f85baa
openvswitch2.17-2.17.0-148.el8fdp.ppc64le.rpm SHA-256: a9427c17d3aea4474dcc7aeb9e19baf064f755ad92238c4c91a485ccd5777a50
openvswitch2.17-debuginfo-2.17.0-148.el8fdp.ppc64le.rpm SHA-256: 7f820eff7f1d5326c8c7c088f377b281084ba69b84abdf48acb6c84ceb4c24f8
openvswitch2.17-debugsource-2.17.0-148.el8fdp.ppc64le.rpm SHA-256: bd0203b44b0b0029a6765ad0989a930de17744441be7413b3438bb31d0241a8d
openvswitch2.17-devel-2.17.0-148.el8fdp.ppc64le.rpm SHA-256: 755087ec700a9fd54d767646925bed350b5aa3ad59f8db476a17c3ff53eaa806
openvswitch2.17-ipsec-2.17.0-148.el8fdp.ppc64le.rpm SHA-256: 353a7b3081c0c82ebb4528ad7ea0e874061d6bde8d26c7342ae9d7efdac11457
openvswitch2.17-test-2.17.0-148.el8fdp.noarch.rpm SHA-256: f4a00b71615a02fb44bee263a1b2e7fab549b189cdc350fba63701f503f188ee
python3-openvswitch2.17-2.17.0-148.el8fdp.ppc64le.rpm SHA-256: 5815b43675e8ef9bfa9f6feb1d3e391f2b1c37622119d72b1018edd313621191
python3-openvswitch2.17-debuginfo-2.17.0-148.el8fdp.ppc64le.rpm SHA-256: 6ad2b4c21f469e3169d03880865f6b36d7a6f1eeb3ef69b50735f6eac0f7f6c4

Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 8

SRPM
openvswitch2.17-2.17.0-148.el8fdp.src.rpm SHA-256: edb35c7a7ecf323218515190be7656c7fbc3b8e1f21f1ac106e26155fe2466e9
s390x
network-scripts-openvswitch2.17-2.17.0-148.el8fdp.s390x.rpm SHA-256: bae18223cd91ebe88aa2993da257a4268ce581f653de91b28e3c71ef4da79072
openvswitch2.17-2.17.0-148.el8fdp.s390x.rpm SHA-256: 40bc49856ef853f4f3a046668821afe70bd1b8ac074f497faae7103553795129
openvswitch2.17-debuginfo-2.17.0-148.el8fdp.s390x.rpm SHA-256: ef2ef0f541b35a164632a7a04a29278bbe2a84690b09113246955c3cb6564671
openvswitch2.17-debugsource-2.17.0-148.el8fdp.s390x.rpm SHA-256: 106834143729b077b9634c0f9fdcb0c87dbc0aa0d239c569e515df6d76ee9745
openvswitch2.17-devel-2.17.0-148.el8fdp.s390x.rpm SHA-256: ffba3bbca905b192475541fef3024dcb98dc1daccc1215c38c125ba9d1111b96
openvswitch2.17-ipsec-2.17.0-148.el8fdp.s390x.rpm SHA-256: bc993d1aa2d87e9147380ff244dcef6442498dc5e1c19b5f19459ac07536d58a
openvswitch2.17-test-2.17.0-148.el8fdp.noarch.rpm SHA-256: f4a00b71615a02fb44bee263a1b2e7fab549b189cdc350fba63701f503f188ee
python3-openvswitch2.17-2.17.0-148.el8fdp.s390x.rpm SHA-256: ce247afd1c6eaac75ed7823dd7b9a6c2d6d6915dcd93e7777ccb864df49b0707
python3-openvswitch2.17-debuginfo-2.17.0-148.el8fdp.s390x.rpm SHA-256: 9b25152dd49a8435b9bec3947f3b5bcb132f98d63e1e258da460e3c7f2d31b1f

Red Hat Enterprise Linux Fast Datapath (for RHEL for ARM 64) 8

SRPM
openvswitch2.17-2.17.0-148.el8fdp.src.rpm SHA-256: edb35c7a7ecf323218515190be7656c7fbc3b8e1f21f1ac106e26155fe2466e9
aarch64
network-scripts-openvswitch2.17-2.17.0-148.el8fdp.aarch64.rpm SHA-256: 6a427a60e51543db645aa6d330bb8844e96621ddf0bc630e7ec5bed58f458012
openvswitch2.17-2.17.0-148.el8fdp.aarch64.rpm SHA-256: 0ba7f1bfed6be07bfd2ea97f8436f285c57ae7b6b62ac0ef0dee74da71ddb241
openvswitch2.17-debuginfo-2.17.0-148.el8fdp.aarch64.rpm SHA-256: 45fbe3e3bdf5c1c052c499706c2eb89eff2172e7f598516dced1d6cb425737e7
openvswitch2.17-debugsource-2.17.0-148.el8fdp.aarch64.rpm SHA-256: 3dd5f2bec168de9c7308d5c3c57fa72da3f530a9451f4b37c5842e8a6adffa68
openvswitch2.17-devel-2.17.0-148.el8fdp.aarch64.rpm SHA-256: 08c119b211ae37175c646e0573e641c9a83cd19e7329391567e8779c7e0de584
openvswitch2.17-ipsec-2.17.0-148.el8fdp.aarch64.rpm SHA-256: a43e274b120f346348ab1c51af49061b2a0f4c64fdf09c8cb21a7c75803916bf
openvswitch2.17-test-2.17.0-148.el8fdp.noarch.rpm SHA-256: f4a00b71615a02fb44bee263a1b2e7fab549b189cdc350fba63701f503f188ee
python3-openvswitch2.17-2.17.0-148.el8fdp.aarch64.rpm SHA-256: b0dec985f711bbdd8e684b22794275fd370aa7338e4497d02a0a464c20fb2df6
python3-openvswitch2.17-debuginfo-2.17.0-148.el8fdp.aarch64.rpm SHA-256: 3b3c11ccfa4067c1aed6b35d7a9c94fe55c472c43f9bb54f537eb392506dad63

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility