Security update for openvswitch3
This update for openvswitch3 fixes the following issues: Update to v3.1.7: - CVE-2023-3966: openvswitch, openvswitch3: Invalid memory access in Geneve with HW offload (bsc#1219465). - CVE-2024-2182: openvswitch: ov: insufficient validation of incoming BFD packets may lead to denial of service (bsc#1255435). - CVE-2023-1668: openvswitch: remote traffic denial of service via crafted packets with IP proto 0 (bsc#1210054). - CVE-2023-3153: openvswitch,openvswitch3: service monitor MAC flow is not rate limited (bsc#1212125). - CVE-2023-5366: openvswitch: missing masks on a final stage with ports trie (bsc#1216002).
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for openvswitch3 fixes the following issues: Update to v3.1.7: - CVE-2023-3966: openvswitch, openvswitch3: Invalid memory access in Geneve with HW offload (bsc#1219465). - CVE-2024-2182: openvswitch: ov: insufficient validation of incoming BFD packets may lead to denial of service (bsc#1255435). - CVE-2023-1668: openvswitch: remote traffic denial of service via crafted packets with IP proto 0 (bsc#1210054). - CVE-2023-3153: openvswitch,openvswitch3: service monitor MAC flow is not rate limited (bsc#1212125). - CVE-2023-5366: openvswitch: missing masks on a final stage with ports trie (bsc#1216002).
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1210054
- https://bugzilla.suse.com/1212125
- https://bugzilla.suse.com/1216002
- https://bugzilla.suse.com/1219465
- https://bugzilla.suse.com/1255435
- https://www.suse.com/security/cve/CVE-2023-1668
- https://www.suse.com/security/cve/CVE-2023-3152
- https://www.suse.com/security/cve/CVE-2023-3153
- https://www.suse.com/security/cve/CVE-2023-3966
- https://www.suse.com/security/cve/CVE-2023-5366
- https://www.suse.com/security/cve/CVE-2024-2182
- https://www.suse.com/security/cve/CVE-2025-0650
- https://www.suse.com/support/update/announcement/2026/suse-su-20260290-1/