Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:1095 - Security Advisory
Issued:
2025-02-05
Updated:
2025-02-05

RHSA-2025:1095 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: ovn23.09 security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for ovn23.09 is now available for Fast Datapath for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

OVN, the Open Virtual Network, is a system to support virtual network abstraction. OVN complements the existing capabilities of OVS to add native support for virtual network abstractions, such as virtual L2 and L3 overlays and security groups.

Security Fix(es):

  • ovn: egress ACLs may be bypassed via specially crafted UDP packet (CVE-2025-0650)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Fast Datapath 9 x86_64
  • Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 9 ppc64le
  • Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 9 s390x
  • Red Hat Enterprise Linux Fast Datapath (for RHEL for ARM 64) 9 aarch64

Fixes

  • BZ - 2339537 - CVE-2025-0650 ovn: egress ACLs may be bypassed via specially crafted UDP packet

CVEs

  • CVE-2025-0650

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Fast Datapath 9

SRPM
ovn23.09-23.09.6-12.el9fdp.src.rpm SHA-256: 583245cee91cee120a2a50b3535a230e8a556c9e279c8a71ca4bc969ffdcf0be
x86_64
ovn23.09-23.09.6-12.el9fdp.x86_64.rpm SHA-256: 1fc9ed8b74306f7bd48860de480c2f303e1ef88339a695ecba9c34523605bce5
ovn23.09-central-23.09.6-12.el9fdp.x86_64.rpm SHA-256: 60f22959ab08f0ea886b402182cf93a3d9c017280ba2fdfa5b6f6a8abb3443ed
ovn23.09-central-debuginfo-23.09.6-12.el9fdp.x86_64.rpm SHA-256: 8eba0e1b6b62fe7b16a7767cedba41bcc1f2d3dd28ec443184e9dd31b94f1b87
ovn23.09-debuginfo-23.09.6-12.el9fdp.x86_64.rpm SHA-256: 2705f47d18db59d4cd30012b5a4775ff480d8415839245a66e9c2c2effb6f94e
ovn23.09-debugsource-23.09.6-12.el9fdp.x86_64.rpm SHA-256: c529da49d1f033480907242f30c433476344a77b978f1bed9a512d169a1a8eef
ovn23.09-host-23.09.6-12.el9fdp.x86_64.rpm SHA-256: c0092068d335df9b7db6037e20b20fe946e46a43f308b977018db77b46cd55d3
ovn23.09-host-debuginfo-23.09.6-12.el9fdp.x86_64.rpm SHA-256: e218dbcb53c6b19d7c9b7effd87acfe3ad7ef6af273450584efaf04133ff8c89
ovn23.09-vtep-23.09.6-12.el9fdp.x86_64.rpm SHA-256: 816a0df962a0e72f4c175fefe0432d97db08e8a48a9ccd65da82ba1ebfdf1cca
ovn23.09-vtep-debuginfo-23.09.6-12.el9fdp.x86_64.rpm SHA-256: 2e7cc21df9bb07865fe84d4e570003030a07444b80b9b380b327bb059db5591f

Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 9

SRPM
ovn23.09-23.09.6-12.el9fdp.src.rpm SHA-256: 583245cee91cee120a2a50b3535a230e8a556c9e279c8a71ca4bc969ffdcf0be
ppc64le
ovn23.09-23.09.6-12.el9fdp.ppc64le.rpm SHA-256: ef1613d74cd077b2dc9da1402f07d5a14e0987125bec9200a82b7c33455922f1
ovn23.09-central-23.09.6-12.el9fdp.ppc64le.rpm SHA-256: f4f18ff2150543bd976c7f1264094d4a16fb3b5f0b077ae0826fa992606cb5cc
ovn23.09-central-debuginfo-23.09.6-12.el9fdp.ppc64le.rpm SHA-256: 112552e806a75cf3dac7bb1c098998f33c119e634c35647daf598b1b4d572930
ovn23.09-debuginfo-23.09.6-12.el9fdp.ppc64le.rpm SHA-256: a17d3499378ce50bf35dabad18e836ad83193b8f7c71d88fc125891ba500da66
ovn23.09-debugsource-23.09.6-12.el9fdp.ppc64le.rpm SHA-256: 62445cd5c1f3031aeb9d5194ec2886c7dc6a534bb6bbae9cd6a796b271ba38dd
ovn23.09-host-23.09.6-12.el9fdp.ppc64le.rpm SHA-256: 982d5bcbd6bff2e810273f3c9a31ceb237a207f84f6de9cf9b8e781c10f59909
ovn23.09-host-debuginfo-23.09.6-12.el9fdp.ppc64le.rpm SHA-256: 63d5e5db6810201f5885656673392092b9a655c7f67c56c45c075b2bed041c3e
ovn23.09-vtep-23.09.6-12.el9fdp.ppc64le.rpm SHA-256: 33ca2d2b07e511b782f3131b4d0241699f6b5c4afc98800e96523e0b786f8289
ovn23.09-vtep-debuginfo-23.09.6-12.el9fdp.ppc64le.rpm SHA-256: fb5c2ead6344d8bc471a4cba603fc650a22a843321626ee0b9ec72ee4a02f8a0

Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 9

SRPM
ovn23.09-23.09.6-12.el9fdp.src.rpm SHA-256: 583245cee91cee120a2a50b3535a230e8a556c9e279c8a71ca4bc969ffdcf0be
s390x
ovn23.09-23.09.6-12.el9fdp.s390x.rpm SHA-256: d6a3334491ccfb0a55fab8e811a4c989d60b50bbf08d1d9dd169ac8b67721a8c
ovn23.09-central-23.09.6-12.el9fdp.s390x.rpm SHA-256: 997ec2bac67fae1da4540f776bcbad734e4714fbd4cb63f7086a5aa7edb6d381
ovn23.09-central-debuginfo-23.09.6-12.el9fdp.s390x.rpm SHA-256: b386da3ae6845a50d8f2b40a1d66b92deef1de127da42e9b262611e8cb16532a
ovn23.09-debuginfo-23.09.6-12.el9fdp.s390x.rpm SHA-256: ccc51aceebaac9ed9ac4504cd06fb63905494fe1a93391bfc305a0655d830421
ovn23.09-debugsource-23.09.6-12.el9fdp.s390x.rpm SHA-256: ef35c1bf7bb7420e6a24c2d9956c9fafb0deb1a489447df43da50e6de2843fb0
ovn23.09-host-23.09.6-12.el9fdp.s390x.rpm SHA-256: 53f9fb0471f8b6451947383da33c96a4414fd98790ed7dccfcc3d1944831f622
ovn23.09-host-debuginfo-23.09.6-12.el9fdp.s390x.rpm SHA-256: 5868bd6b3c7aa0bb8a2803237abe81f0831c3104b6caf2d12862872d92ac1e6c
ovn23.09-vtep-23.09.6-12.el9fdp.s390x.rpm SHA-256: 1c0bc6ce882158e892a7eab2fc7d051e79ecc1a38bcaecf571764537717a05cf
ovn23.09-vtep-debuginfo-23.09.6-12.el9fdp.s390x.rpm SHA-256: de47cf54bbf6b696a9d893d900220db8f5961940ad18aae4efc05d71994ecbd2

Red Hat Enterprise Linux Fast Datapath (for RHEL for ARM 64) 9

SRPM
ovn23.09-23.09.6-12.el9fdp.src.rpm SHA-256: 583245cee91cee120a2a50b3535a230e8a556c9e279c8a71ca4bc969ffdcf0be
aarch64
ovn23.09-23.09.6-12.el9fdp.aarch64.rpm SHA-256: a64b0180346c160630c480aedb5a8efe0ff049ea550ecb830735cfa4282df1aa
ovn23.09-central-23.09.6-12.el9fdp.aarch64.rpm SHA-256: a5592c167f73da4f31af3ad3de81195afaa09087d6bc22be2d021ce638d20d71
ovn23.09-central-debuginfo-23.09.6-12.el9fdp.aarch64.rpm SHA-256: 791dfd3531cd436affcec815ec8e15624d8a32a0924297932f9a21b8d5629306
ovn23.09-debuginfo-23.09.6-12.el9fdp.aarch64.rpm SHA-256: 5fd1d6a0cc0cd22873aae2bbb380000556c57a951c87cf61673d97a907999896
ovn23.09-debugsource-23.09.6-12.el9fdp.aarch64.rpm SHA-256: c988ba66b5a8761bc392b47499e5c823af1ded3df1bf77e4a4496828b344463c
ovn23.09-host-23.09.6-12.el9fdp.aarch64.rpm SHA-256: b55884aa86b6c0ad32594f56c90edc75e29ea0ca08a5bc76b046cdcf0b7a18db
ovn23.09-host-debuginfo-23.09.6-12.el9fdp.aarch64.rpm SHA-256: 8c06716ce80789cc5baaac6bcbcf05de87d8f31ed093284c2f371bdd84521baa
ovn23.09-vtep-23.09.6-12.el9fdp.aarch64.rpm SHA-256: 7dffafdb77f6152ae406e5b1d2de553a07eaef12ce68149c9e3f73149a5fa209
ovn23.09-vtep-debuginfo-23.09.6-12.el9fdp.aarch64.rpm SHA-256: 04c2c25370f62b95684258eec79ff43b07b07278c30140a5c68f081cf232f65a

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility