Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:1087 - Security Advisory
Issued:
2025-02-05
Updated:
2025-02-05

RHSA-2025:1087 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: ovn23.03 security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for ovn23.03 is now available for Fast Datapath for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

OVN, the Open Virtual Network, is a system to support virtual network abstraction. OVN complements the existing capabilities of OVS to add native support for virtual network abstractions, such as virtual L2 and L3 overlays and security groups.

Security Fix(es):

  • ovn: egress ACLs may be bypassed via specially crafted UDP packet (CVE-2025-0650)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Fast Datapath 8 x86_64
  • Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 8 ppc64le
  • Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 8 s390x
  • Red Hat Enterprise Linux Fast Datapath (for RHEL for ARM 64) 8 aarch64

Fixes

  • BZ - 2339537 - CVE-2025-0650 ovn: egress ACLs may be bypassed via specially crafted UDP packet

CVEs

  • CVE-2025-0650

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Fast Datapath 8

SRPM
ovn23.03-23.03.3-22.el8fdp.src.rpm SHA-256: 6398099ec19c7e042380143658f7ebc1f6d82690ee2c5cc57cd431e5f1efd8c4
x86_64
ovn23.03-23.03.3-22.el8fdp.x86_64.rpm SHA-256: 949b17d935bf4436942b36480e876f38314c5fa91d16c86b1ded4c74d5ed7836
ovn23.03-central-23.03.3-22.el8fdp.x86_64.rpm SHA-256: 106120259f550553ee88b49b3ed690b0245e5d6ac3b4d41027f59a018bf43032
ovn23.03-central-debuginfo-23.03.3-22.el8fdp.x86_64.rpm SHA-256: d5fecae0b3c4dfc9c2797894fc3cbe07222389c7b82d057672b44ab1bfadee1d
ovn23.03-debuginfo-23.03.3-22.el8fdp.x86_64.rpm SHA-256: 5b6df098dbd64ba23009ebf9fc06a7130c2fd682f77977504bd2cd1520be970c
ovn23.03-debugsource-23.03.3-22.el8fdp.x86_64.rpm SHA-256: 6a3af868fb3f8b1011462b9e63af812b2bc382c4ae4f4123c92b326c36dbfd22
ovn23.03-host-23.03.3-22.el8fdp.x86_64.rpm SHA-256: 775634ba5a31db30fd88c66339b4c1b33cfd45943e124ffbbe2bd3258cdd5b20
ovn23.03-host-debuginfo-23.03.3-22.el8fdp.x86_64.rpm SHA-256: 5347eebf50326c4cb96cb205747b6f77be8933eb6cbafe7deef871bb7621dc4d
ovn23.03-vtep-23.03.3-22.el8fdp.x86_64.rpm SHA-256: 501b179c19990cbac322cb315665511bd3b7af0be581328ce4cdd3e8493e7cf7
ovn23.03-vtep-debuginfo-23.03.3-22.el8fdp.x86_64.rpm SHA-256: e8880ab4024a3d049bc3398fd7bb3f33f5fc76fd255fb2648ba55a79f3565234

Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 8

SRPM
ovn23.03-23.03.3-22.el8fdp.src.rpm SHA-256: 6398099ec19c7e042380143658f7ebc1f6d82690ee2c5cc57cd431e5f1efd8c4
ppc64le
ovn23.03-23.03.3-22.el8fdp.ppc64le.rpm SHA-256: 37f7abae1aa6f5f3abb43598d84cf650e1e36e9c4d420dcebaf96d946d4eb713
ovn23.03-central-23.03.3-22.el8fdp.ppc64le.rpm SHA-256: 6473e3eff3f6b3a5c6521a064f09d96250cce03adb3f1a7794aadb58c09be5ba
ovn23.03-central-debuginfo-23.03.3-22.el8fdp.ppc64le.rpm SHA-256: 531b044a8408c50e62a5b645d361c3206fa0daaa910533eba6a8b1f54fbd8f6f
ovn23.03-debuginfo-23.03.3-22.el8fdp.ppc64le.rpm SHA-256: cc2d4c0cb3117d15f456732d4c352c04ce276bf584a5e82a84091ca30bafe39e
ovn23.03-debugsource-23.03.3-22.el8fdp.ppc64le.rpm SHA-256: b40ff5678818e992471148ccbdf81c62a50f29145b079a2f2aa09263723e93da
ovn23.03-host-23.03.3-22.el8fdp.ppc64le.rpm SHA-256: 5ea4847797296a0f4d80106014d3617a8ad6f1507c291a5ca0d3cb70882f1056
ovn23.03-host-debuginfo-23.03.3-22.el8fdp.ppc64le.rpm SHA-256: c5a312bbd81a3def9f9334e06d54a805e05ec0d33d0b377d8a77f0c5d34d9b9a
ovn23.03-vtep-23.03.3-22.el8fdp.ppc64le.rpm SHA-256: bec53931ab5a6921a21f3731ecb55e4b06f1c4aa73242a7168292938926213bb
ovn23.03-vtep-debuginfo-23.03.3-22.el8fdp.ppc64le.rpm SHA-256: 03670c192801f94fa38dec4041215bc38540d6e53a6473708609eb046dada51b

Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 8

SRPM
ovn23.03-23.03.3-22.el8fdp.src.rpm SHA-256: 6398099ec19c7e042380143658f7ebc1f6d82690ee2c5cc57cd431e5f1efd8c4
s390x
ovn23.03-23.03.3-22.el8fdp.s390x.rpm SHA-256: b2bc143be190e800ce9e916fd4d6a7f54e4d5c93e6079d1c8e463d578ebf645d
ovn23.03-central-23.03.3-22.el8fdp.s390x.rpm SHA-256: 78dc5f37242217fb7e6cd385f3fbe9a971bc0b16e515549292fb056b3bdd5e67
ovn23.03-central-debuginfo-23.03.3-22.el8fdp.s390x.rpm SHA-256: 8d56498a178398dd421fd0db6ab3769229ecf7b44e8889c653d505fcf1c5bd4d
ovn23.03-debuginfo-23.03.3-22.el8fdp.s390x.rpm SHA-256: 07ec43da37d3f31c5c8b0c948332f81bf8f8d29aebf910efc0579732dfda649e
ovn23.03-debugsource-23.03.3-22.el8fdp.s390x.rpm SHA-256: 048408c04f2cc357cf41cfa9979fbc50a47ca594a1065eafcb69a7e57adfe4b2
ovn23.03-host-23.03.3-22.el8fdp.s390x.rpm SHA-256: 9ff871bcc76944205ef68effb22b7ddc05549ed49000bd4aa49a13b74a97b299
ovn23.03-host-debuginfo-23.03.3-22.el8fdp.s390x.rpm SHA-256: ed7a489b0a8586aec4905ed8eb6e03fddfc71cb8f44d010958500cf218da5775
ovn23.03-vtep-23.03.3-22.el8fdp.s390x.rpm SHA-256: 94f91646ed0c420f6fbe1661172e9ca2a80387f48ec2a39fd700fb29c635a31a
ovn23.03-vtep-debuginfo-23.03.3-22.el8fdp.s390x.rpm SHA-256: 03045d5bc627510f25d9a2d202569a3e129f7fbc691332fe048a98f3762e00a4

Red Hat Enterprise Linux Fast Datapath (for RHEL for ARM 64) 8

SRPM
ovn23.03-23.03.3-22.el8fdp.src.rpm SHA-256: 6398099ec19c7e042380143658f7ebc1f6d82690ee2c5cc57cd431e5f1efd8c4
aarch64
ovn23.03-23.03.3-22.el8fdp.aarch64.rpm SHA-256: 136f19a4d43c707e0ecb7659fc97723665faa579df30af3892c074423259856c
ovn23.03-central-23.03.3-22.el8fdp.aarch64.rpm SHA-256: 61b732e4a47e9052cdf5be0b3fdc11b2ac93f1e49a99f7e27f88b4c3233d053b
ovn23.03-central-debuginfo-23.03.3-22.el8fdp.aarch64.rpm SHA-256: 335db7cdca86d9e9172eff9491082866de4553405fe06e910df1371c7bea0fdb
ovn23.03-debuginfo-23.03.3-22.el8fdp.aarch64.rpm SHA-256: eefb1b2fc326c1977b4d4c7d04c1892b2a4f792b5c76c4e8c7e041ddfc116ad2
ovn23.03-debugsource-23.03.3-22.el8fdp.aarch64.rpm SHA-256: 2349939a7b573e58803fe2a72e6b7153bd6d56fe2fa91d296a907fcf3c7b0391
ovn23.03-host-23.03.3-22.el8fdp.aarch64.rpm SHA-256: ba63c35115a2b6930db780d9d6c83a502bda32437651df80af476a43d908e292
ovn23.03-host-debuginfo-23.03.3-22.el8fdp.aarch64.rpm SHA-256: 2ddce05195c1028f42c3e0c785ddedf061ca7519e0214515d4df6e1d48bfbed0
ovn23.03-vtep-23.03.3-22.el8fdp.aarch64.rpm SHA-256: a378e20b879332f6eaba0beeb057c7b3a1bb797a7cdb87ce164ceb6a00d57ded
ovn23.03-vtep-debuginfo-23.03.3-22.el8fdp.aarch64.rpm SHA-256: 7e2baf3a7a41f97b3938acb60fb597bfe84b8e1615c78fe07ecc377a4ec3543a

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat, Inc.

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility