RHSA-2021:2077: Important: openvswitch security update
Open vSwitch provides standard network bridging functions and support forthe OpenFlow protocol for remote per-flow control of traffic.Security Fix(es): lldpd: buffer overflow in the lldpdecode function in daemon/protocols/lldp.c (CVE-2015-8011) openvswitch: limitation in the OVS packet parsing in userspace leads to DoS (CVE-2020-35498) lldp/openvswitch: denial of service via externally triggered memory leak (CVE-2020-27827)
Affected Software
Remediation
Event History
Frequently Asked Questions
What security vulnerabilities are addressed in RHSA-2021:2077?
RHSA-2021:2077 addresses a buffer overflow vulnerability in lldpd related to the lldp_decode function.
Which versions of Open vSwitch are affected by RHSA-2021:2077?
Open vSwitch versions prior to 2.9.9-1.el7fd are affected by RHSA-2021:2077.
How can I fix the vulnerabilities outlined in RHSA-2021:2077?
To fix the vulnerabilities, upgrade to Open vSwitch version 2.9.9-1.el7fd or later.
What is the impact of not applying the RHSA-2021:2077 update?
Not applying the RHSA-2021:2077 update may leave your system vulnerable to potential buffer overflow attacks.
Is there a post-update verification step for RHSA-2021:2077?
Yes, it is recommended to verify that the Open vSwitch service is functioning correctly after applying RHSA-2021:2077.