RHSA-2021:1050: Moderate: openvswitch2.11 security update
Open vSwitch provides standard network bridging functions and support forthe OpenFlow protocol for remote per-flow control of traffic.Security Fix(es): openvswitch: limitation in the OVS packet parsing in userspace leads to DoS (CVE-2020-35498) lldp/openvswitch: denial of service via externally triggered memory leak (CVE-2020-27827) For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:1050?
The severity of RHSA-2021:1050 is classified as moderate.
How do I fix RHSA-2021:1050?
To fix RHSA-2021:1050, update to the relevant versions of the affected packages provided by Red Hat.
What vulnerabilities are addressed in RHSA-2021:1050?
RHSA-2021:1050 addresses a limitation in OVS packet parsing that can lead to a Denial of Service.
Which versions of Open vSwitch are affected by RHSA-2021:1050?
Open vSwitch versions prior to 2.11.3-86.el7fd are affected by RHSA-2021:1050.
Is there a workaround for RHSA-2021:1050?
There are no specific workarounds recommended for RHSA-2021:1050; updating to the latest version is advised.