RHSA-2022:6385: Important: openvswitch2.15 security update
Open vSwitch provides standard network bridging functions and support forthe OpenFlow protocol for remote per-flow control of traffic.Security Fix(es): dpdk: DoS when a Vhost header crosses more than two descriptors and exhausts all mbufs (CVE-2022-2132) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:6385?
The severity of RHSA-2022:6385 is classified as important.
How do I fix RHSA-2022:6385?
To fix RHSA-2022:6385, update your Open vSwitch packages to version 2.15.0-113.2.el8fd or later.
What vulnerability does RHSA-2022:6385 address?
RHSA-2022:6385 addresses a denial of service vulnerability when a Vhost header crosses more than two descriptors.
Which software packages are affected by RHSA-2022:6385?
Affected packages include openvswitch, network-scripts-openvswitch, and python3-openvswitch for version 2.15.0-113.2.el8fd.
Is there a workaround available for RHSA-2022:6385?
There are no specific workarounds mentioned for RHSA-2022:6385, so it is recommended to apply the security updates.