RHSA-2025:1095: Important: ovn23.09 security update
Important: ovn23.09 security update
Other sources
OVN, the Open Virtual Network, is a system to support virtual network abstraction. OVN complements the existing capabilities of OVS to add native support for virtual network abstractions, such as virtual L2 and L3 overlays and security groups.<br>Security Fix(es):<br><li> ovn: egress ACLs may be bypassed via specially crafted UDP packet (CVE-2025-0650)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:1095?
The severity of RHSA-2025:1095 is classified as Important.
What software is affected by RHSA-2025:1095?
RHSA-2025:1095 affects multiple packages including ovn23.09 and its related components.
How do I fix RHSA-2025:1095?
To fix RHSA-2025:1095, update the affected packages to version 23.09.6-12.el9fd.
Is RHSA-2025:1095 related to security vulnerabilities?
Yes, RHSA-2025:1095 includes a security update addressing vulnerabilities in the OVN package.
What is the purpose of OVN in RHSA-2025:1095?
OVN in RHSA-2025:1095 provides support for virtual network abstractions and complements Open vSwitch capabilities.