Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:1097 - Security Advisory
Issued:
2025-02-05
Updated:
2025-02-05

RHSA-2025:1097 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: ovn24.09 security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for ovn24.09 is now available for Fast Datapath for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

OVN, the Open Virtual Network, is a system to support virtual network abstraction. OVN complements the existing capabilities of OVS to add native support for virtual network abstractions, such as virtual L2 and L3 overlays and security groups.

Security Fix(es):

  • ovn: egress ACLs may be bypassed via specially crafted UDP packet (CVE-2025-0650)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Fast Datapath 9 x86_64
  • Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 9 ppc64le
  • Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 9 s390x
  • Red Hat Enterprise Linux Fast Datapath (for RHEL for ARM 64) 9 aarch64

Fixes

  • BZ - 2339537 - CVE-2025-0650 ovn: egress ACLs may be bypassed via specially crafted UDP packet

CVEs

  • CVE-2025-0650

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Fast Datapath 9

SRPM
ovn24.09-24.09.1-66.el9fdp.src.rpm SHA-256: 2f3bdeaa1f25ca0ff72036b1d599d4fffaed19df7e91d0d26f8f1eeaa5358c77
x86_64
ovn24.09-24.09.1-66.el9fdp.x86_64.rpm SHA-256: 2a6e7d590200296801fe2b1adea242fe187af3d19dbf33a70aedf97c1800fbc6
ovn24.09-central-24.09.1-66.el9fdp.x86_64.rpm SHA-256: 374e5095107c5daf0b65cab13e8376827cbd8f9b5b347b9ab37e0e8005d2ef27
ovn24.09-central-debuginfo-24.09.1-66.el9fdp.x86_64.rpm SHA-256: 9d70d9171145e56dbe64abeb3aafb69c23d9b5a7ce1a1e366fef4bdf9911951e
ovn24.09-debuginfo-24.09.1-66.el9fdp.x86_64.rpm SHA-256: 997fe5be884948c332e03574c8c2f95751901bbb66e1d477a1cbe93205b7271c
ovn24.09-debugsource-24.09.1-66.el9fdp.x86_64.rpm SHA-256: 631d408d46502ef1b62704a875fd06518c7ecb12239fd948f5d69a6e27bbc1f4
ovn24.09-host-24.09.1-66.el9fdp.x86_64.rpm SHA-256: 53fb3b58f247a42509b752b3a67f11ecafdc23ef1080950399ac60f96120be9e
ovn24.09-host-debuginfo-24.09.1-66.el9fdp.x86_64.rpm SHA-256: f9ceff20c1aed13b6a2258f51db0b3814f579735a362ada7eb7629f42694e085
ovn24.09-vtep-24.09.1-66.el9fdp.x86_64.rpm SHA-256: 3f2c0d0e2b24138f2a3d365b84b6f4941823d3786ccfb760d0f75d1e7c595ecd
ovn24.09-vtep-debuginfo-24.09.1-66.el9fdp.x86_64.rpm SHA-256: 8afdab565db5bf959aaff48953abbd677dda10a6d35e7becd2450015b43894b5

Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE) 9

SRPM
ovn24.09-24.09.1-66.el9fdp.src.rpm SHA-256: 2f3bdeaa1f25ca0ff72036b1d599d4fffaed19df7e91d0d26f8f1eeaa5358c77
ppc64le
ovn24.09-24.09.1-66.el9fdp.ppc64le.rpm SHA-256: 79d973c212404e5c65e312f19192fa8a05fff460f5aaf8f80bbf9ea3f5295bde
ovn24.09-central-24.09.1-66.el9fdp.ppc64le.rpm SHA-256: fcabe6e244bc55294d2f9cb5a898530179ccb22867e823348b59395abffc796f
ovn24.09-central-debuginfo-24.09.1-66.el9fdp.ppc64le.rpm SHA-256: d495b42f4657cbb8241a8e18347991e3551f97d3e7d2f535a719ab187be5d24d
ovn24.09-debuginfo-24.09.1-66.el9fdp.ppc64le.rpm SHA-256: 1223285eb2e09eb9b9e0779f134dc58dea1ad65e71fb3143411eec3486d8b77b
ovn24.09-debugsource-24.09.1-66.el9fdp.ppc64le.rpm SHA-256: b2b137be4445663a28836c7dc28e7017da4bcfc80a5243f114cc502d229f8c56
ovn24.09-host-24.09.1-66.el9fdp.ppc64le.rpm SHA-256: 9b56c864740afc12124458568bfa049129f418c32c512a88d7aae0c695b68cc6
ovn24.09-host-debuginfo-24.09.1-66.el9fdp.ppc64le.rpm SHA-256: 6c0961e8a99d82cd32fd7ef4451bdea85f594aa754564773168def39ca313265
ovn24.09-vtep-24.09.1-66.el9fdp.ppc64le.rpm SHA-256: ecd9658a897cca10652545e7518b9d1213aaab965d11242eaa8b6ec656978ee7
ovn24.09-vtep-debuginfo-24.09.1-66.el9fdp.ppc64le.rpm SHA-256: 6cebb8ff1a4733265e3137b288d91d5e8a1c4458a0cc4c61d666cec05dcb5a02

Red Hat Enterprise Linux Fast Datapath (for IBM z Systems) 9

SRPM
ovn24.09-24.09.1-66.el9fdp.src.rpm SHA-256: 2f3bdeaa1f25ca0ff72036b1d599d4fffaed19df7e91d0d26f8f1eeaa5358c77
s390x
ovn24.09-24.09.1-66.el9fdp.s390x.rpm SHA-256: da0f02b194a6afa0e79f329c45d94747f012c721d2f9599e3dabe47570cd242b
ovn24.09-central-24.09.1-66.el9fdp.s390x.rpm SHA-256: 18bd507a9f51385a330035dbd53db7e89c21d6d6b7df832ea3f936c63e70bf42
ovn24.09-central-debuginfo-24.09.1-66.el9fdp.s390x.rpm SHA-256: 31e94cb601759ffa531a271ca0a54970694d5f0547ab930ca18c5bb3e6bb1d0d
ovn24.09-debuginfo-24.09.1-66.el9fdp.s390x.rpm SHA-256: c602ef81ea490d57eb464bd06a9369f07c4ed6e270e3e5881c512c68529e40cf
ovn24.09-debugsource-24.09.1-66.el9fdp.s390x.rpm SHA-256: a7c09a21d3c8b5056415ad140ee0d39e3f0246fc2b89acbdf3c84c1937feef31
ovn24.09-host-24.09.1-66.el9fdp.s390x.rpm SHA-256: f1346c20aa0d0dea2569ab672bb0a3f6ff381b2e2eece737c3cf302b4c504607
ovn24.09-host-debuginfo-24.09.1-66.el9fdp.s390x.rpm SHA-256: 3c7f709d91dfdb79976b53db17e7efb5d1e86dd16ecd2b602d444ce185f97897
ovn24.09-vtep-24.09.1-66.el9fdp.s390x.rpm SHA-256: ac5cd11b777d9f11fabcd30c0a862294bfd7be30024965818101e2c336193259
ovn24.09-vtep-debuginfo-24.09.1-66.el9fdp.s390x.rpm SHA-256: e2e07c44b205aca21b611a102370df95380c6618fac775702280f1905ee5721d

Red Hat Enterprise Linux Fast Datapath (for RHEL for ARM 64) 9

SRPM
ovn24.09-24.09.1-66.el9fdp.src.rpm SHA-256: 2f3bdeaa1f25ca0ff72036b1d599d4fffaed19df7e91d0d26f8f1eeaa5358c77
aarch64
ovn24.09-24.09.1-66.el9fdp.aarch64.rpm SHA-256: 67bd3c46c35a59883725595efebbc813b0b93498b0b7c24b8db2e3f9bc3c0f38
ovn24.09-central-24.09.1-66.el9fdp.aarch64.rpm SHA-256: d7ad373f739304a614421c06371a2e9a1d56463099e84b958ce31f454fa469d6
ovn24.09-central-debuginfo-24.09.1-66.el9fdp.aarch64.rpm SHA-256: 37cb3f6a0295e48c714c4efe01c49ad58b678e6d5ec1ee559d7ac7ca4d41a15e
ovn24.09-debuginfo-24.09.1-66.el9fdp.aarch64.rpm SHA-256: d7640014ded57c31e51a15acfeffda8610a5a4434f7292c489edfe9ef312e768
ovn24.09-debugsource-24.09.1-66.el9fdp.aarch64.rpm SHA-256: 5915558eb198070d30162a338b88261ae679201352f7e4c268e584799131e430
ovn24.09-host-24.09.1-66.el9fdp.aarch64.rpm SHA-256: 706a9d390e574c146611f5308cf14412489971134578d47e4be4da17151255b2
ovn24.09-host-debuginfo-24.09.1-66.el9fdp.aarch64.rpm SHA-256: 2a43b563f6aaea092b495df8f3a0541ff0075ac73f283dba537b5c03fdf0b841
ovn24.09-vtep-24.09.1-66.el9fdp.aarch64.rpm SHA-256: 711c9357a8ff91aadea6ab3fefa0aad988cf4e88e387a838cc95196ce57d7ef5
ovn24.09-vtep-debuginfo-24.09.1-66.el9fdp.aarch64.rpm SHA-256: 65b63d0454e6c2fe9e5b3fd63b598a06ffec6e865a5126a36eb219c075fd9591

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility