RHSA-2021:3942: Moderate: openvswitch2.11 security update
Open vSwitch provides standard network bridging functions and support forthe OpenFlow protocol for remote per-flow control of traffic.Security Fix(es): openvswitch2.11: openvswitch: use-after-free in decodeNXASTRAWENCAP during the decoding of a RAWENCAP action (CVE-2021-36980) For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/openvswitch2.11to a version that resolves this vulnerability.Fixed in 2.11.3-89.el7fd - Upgrade
Upgrade
redhat/openvswitch2.11-debuginfoto a version that resolves this vulnerability.Fixed in 2.11.3-89.el7fd - Upgrade
Upgrade
redhat/openvswitch2.11-develto a version that resolves this vulnerability.Fixed in 2.11.3-89.el7fd - Upgrade
Upgrade
redhat/python-openvswitch2.11to a version that resolves this vulnerability.Fixed in 2.11.3-89.el7fd - Upgrade
Upgrade
openvswitch2.11to a version that resolves this vulnerability.Fixed in 2.11
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:3942?
RHSA-2021:3942 is classified as a moderate severity vulnerability.
How do I fix RHSA-2021:3942?
To fix RHSA-2021:3942, update the Open vSwitch packages to version 2.11.3-89.el7fd or later.
What specific issue does RHSA-2021:3942 address?
RHSA-2021:3942 addresses a use-after-free vulnerability in the decoding of a RAW_ENCAP action.
Which versions of Open vSwitch are affected by RHSA-2021:3942?
RHSA-2021:3942 affects Open vSwitch versions prior to 2.11.3-89.el7fd.
Is there a workaround for RHSA-2021:3942?
There is no documented workaround for RHSA-2021:3942; updating the affected packages is recommended.