Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:1086 - Security Advisory
Issued:
2025-02-05
Updated:
2025-02-05

RHSA-2025:1086 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: ovn22.12 security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for ovn22.12 is now available for Fast Datapath for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

OVN, the Open Virtual Network, is a system to support virtual network abstraction. OVN complements the existing capabilities of OVS to add native support for virtual network abstractions, such as virtual L2 and L3 overlays and security groups.

Security Fix(es):

  • ovn: egress ACLs may be bypassed via specially crafted UDP packet (CVE-2025-0650)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Fast Datapath 8 x86_64
  • Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 8 ppc64le
  • Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 8 s390x
  • Red Hat Enterprise Linux Fast Datapath (for RHEL for ARM 64) 8 aarch64

Fixes

  • BZ - 2339537 - CVE-2025-0650 ovn: egress ACLs may be bypassed via specially crafted UDP packet

CVEs

  • CVE-2025-0650

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Fast Datapath 8

SRPM
ovn22.12-22.12.1-107.el8fdp.src.rpm SHA-256: da48f39a27c9dd33f1649557fc6bdaeffdfb97204bbeada629cf7c79329288b4
x86_64
ovn22.12-22.12.1-107.el8fdp.x86_64.rpm SHA-256: b5fe4f47fa8998593cf0698cb451a4fbe2d5232f68cd23bfadd1d64b8c48aba5
ovn22.12-central-22.12.1-107.el8fdp.x86_64.rpm SHA-256: 227b1120e4297f66ace1dd32b07683456b58d6ffb5d8c0230ff5990cc6c7b723
ovn22.12-central-debuginfo-22.12.1-107.el8fdp.x86_64.rpm SHA-256: e6a260247cf40f209bd7599d087568b1d89a2c8234138881ca1c7b790019eb6f
ovn22.12-debuginfo-22.12.1-107.el8fdp.x86_64.rpm SHA-256: cd482fbc83f6420f17e4590f0b38067acb8fdef9e25066933f8ade49757ee460
ovn22.12-debugsource-22.12.1-107.el8fdp.x86_64.rpm SHA-256: f258e1bddaf8785b9447abcc10b152793ccd18a59c451350e0822782935120e9
ovn22.12-host-22.12.1-107.el8fdp.x86_64.rpm SHA-256: 6c2fb81cbd3e689df8965b4c49d4dfb85764ab38195b62fab2d434cc5099a0db
ovn22.12-host-debuginfo-22.12.1-107.el8fdp.x86_64.rpm SHA-256: 09c792ecdedd709f24e47b7a2348b3b4d7d51d53c4fc4b31e40bdf24f1e0157f
ovn22.12-vtep-22.12.1-107.el8fdp.x86_64.rpm SHA-256: f06be3a2285e1a6dfecc2365e5585940d1cd228e3fdc9397711f6faab4c6938c
ovn22.12-vtep-debuginfo-22.12.1-107.el8fdp.x86_64.rpm SHA-256: 41ee338c269636da8d51f7b0d8fdf0a50538501cd1d958abdd0e03d2fd12a83c

Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 8

SRPM
ovn22.12-22.12.1-107.el8fdp.src.rpm SHA-256: da48f39a27c9dd33f1649557fc6bdaeffdfb97204bbeada629cf7c79329288b4
ppc64le
ovn22.12-22.12.1-107.el8fdp.ppc64le.rpm SHA-256: 2852e95fd69741bfc3d744abe50248d8aaaa91807d20b6c1ff1e87b63ecabdcf
ovn22.12-central-22.12.1-107.el8fdp.ppc64le.rpm SHA-256: 7a2bda1e26f7aaa424f570f026040195331a6056a1b7c388a7bf4f7c7f961b8e
ovn22.12-central-debuginfo-22.12.1-107.el8fdp.ppc64le.rpm SHA-256: dd352af2225407c2a3967cd855a689959d47b3aa8cd514127df254d37714a0f1
ovn22.12-debuginfo-22.12.1-107.el8fdp.ppc64le.rpm SHA-256: ff02e51c2ba18e8abd9af43f46dbd421d2780ee785388f5053666a2f41d252d7
ovn22.12-debugsource-22.12.1-107.el8fdp.ppc64le.rpm SHA-256: 09477a4c0a08e0729ef98a8164b3c77fc47eee04f833cec368f4ebf7e9cdc441
ovn22.12-host-22.12.1-107.el8fdp.ppc64le.rpm SHA-256: 1970be490bbda8ba7109e9be7dbf61dc0b803466a64e79f49a0613ee53588da8
ovn22.12-host-debuginfo-22.12.1-107.el8fdp.ppc64le.rpm SHA-256: ca8cc269482b60dc6a65a851156a6c31aef65aa63722bb57d3f4dfdb70c62774
ovn22.12-vtep-22.12.1-107.el8fdp.ppc64le.rpm SHA-256: 1bb5fc27b3e18d52effc1d24d403f61f87644743620d2542bc5915c5f41cfddd
ovn22.12-vtep-debuginfo-22.12.1-107.el8fdp.ppc64le.rpm SHA-256: b2102a721c3431331af7917e869e5ddfbb1ffca7824df6aaa03f548878cb7d95

Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 8

SRPM
ovn22.12-22.12.1-107.el8fdp.src.rpm SHA-256: da48f39a27c9dd33f1649557fc6bdaeffdfb97204bbeada629cf7c79329288b4
s390x
ovn22.12-22.12.1-107.el8fdp.s390x.rpm SHA-256: 788696216fe75bd9ce6c6870cc77e1d20c5f372857df45de45c41b902c571a8a
ovn22.12-central-22.12.1-107.el8fdp.s390x.rpm SHA-256: 4c44741e14083a362e5677655244a23f606dd29aee11c1b331e2c0ce9fb63a72
ovn22.12-central-debuginfo-22.12.1-107.el8fdp.s390x.rpm SHA-256: e4ad5cd89976775c38f7ccb2d897aa4dd2bf03d0312eb18d9b87739b863ab67d
ovn22.12-debuginfo-22.12.1-107.el8fdp.s390x.rpm SHA-256: 999d09b14fbe83a0f7dfd934304452394e27ca15d9cf42666efadff78f6756ae
ovn22.12-debugsource-22.12.1-107.el8fdp.s390x.rpm SHA-256: 8377ecb64debd285154b0face416f5ac2c6dbf45fd699a6a2444fb825ff1b093
ovn22.12-host-22.12.1-107.el8fdp.s390x.rpm SHA-256: 2e93ae4c82eb92a2e746a16b1f11b7a1f441f79eb4dfadd5c621ff0d7fb8b5b1
ovn22.12-host-debuginfo-22.12.1-107.el8fdp.s390x.rpm SHA-256: 57f9bed073982fc25f9d8459b1697c42257a12619e4249738fed49fd607566f2
ovn22.12-vtep-22.12.1-107.el8fdp.s390x.rpm SHA-256: 02e5645765ede55172d1ee6a510a5fac1eced07f83c8d97792df5020db991ae0
ovn22.12-vtep-debuginfo-22.12.1-107.el8fdp.s390x.rpm SHA-256: cae94c969f2c54edd408f86636d463c992ee78450c5f62300a3c25088b756eca

Red Hat Enterprise Linux Fast Datapath (for RHEL for ARM 64) 8

SRPM
ovn22.12-22.12.1-107.el8fdp.src.rpm SHA-256: da48f39a27c9dd33f1649557fc6bdaeffdfb97204bbeada629cf7c79329288b4
aarch64
ovn22.12-22.12.1-107.el8fdp.aarch64.rpm SHA-256: 611a79e92c77ffd9260eb8616de5a168e3872fa4899544eb11c9cd6f7375fe5b
ovn22.12-central-22.12.1-107.el8fdp.aarch64.rpm SHA-256: 2905c196a54cb8a2640813d0abcd6a1f914e3166ebc384375f382df0df07843f
ovn22.12-central-debuginfo-22.12.1-107.el8fdp.aarch64.rpm SHA-256: 28ceef430367a8f01b4003f7de84084bb28845904dcb133e81acf85a5d101f28
ovn22.12-debuginfo-22.12.1-107.el8fdp.aarch64.rpm SHA-256: d64d968f713b6ea7723d099d563e75015dfeaa62476fffda9c1cebb79955a5a5
ovn22.12-debugsource-22.12.1-107.el8fdp.aarch64.rpm SHA-256: e28ae4e47d4fe72cd66372ab9f078f13f83f50984bf91faf97874fc75e3afc9a
ovn22.12-host-22.12.1-107.el8fdp.aarch64.rpm SHA-256: dd673f4fdb492cf1caad5a86dcc27b4fda4f1cb816721d6694a800b428d2bac1
ovn22.12-host-debuginfo-22.12.1-107.el8fdp.aarch64.rpm SHA-256: 602311b5e4d57304aff6253be590b5fe5bbfee0ce8b3026216dadc5d1fa3a171
ovn22.12-vtep-22.12.1-107.el8fdp.aarch64.rpm SHA-256: 737e9171baf4a5f8deb649924c654539e354cfb719af1bdf0151e0aca0dd868b
ovn22.12-vtep-debuginfo-22.12.1-107.el8fdp.aarch64.rpm SHA-256: f83f1272461344071b98d639847868f45a94c6833158f7a3724c60c9464b59d5

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility