• [SECURITY] [DSA 5387-1] openvswitch security update

    From Moritz Muehlenhoff@21:1/5 to All on Thu Apr 13 20:50:01 2023
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    - ------------------------------------------------------------------------- Debian Security Advisory DSA-5387-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff
    April 13, 2023 https://www.debian.org/security/faq
    - -------------------------------------------------------------------------

    Package : openvswitch
    CVE ID : CVE-2023-1668
    Debian Bug : 1034042

    David Marchard discovered that Open vSwitch, a software-based Ethernet
    virtual switch, is suspectible to denial of service via malformed IP
    packets.

    For the stable distribution (bullseye), this problem has been fixed in
    version 2.15.0+ds1-2+deb11u4.

    We recommend that you upgrade your openvswitch packages.

    For the detailed security status of openvswitch please refer to
    its security tracker page at: https://security-tracker.debian.org/tracker/openvswitch

    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: https://www.debian.org/security/

    Mailing list: debian-security-announce@lists.debian.org
    -----BEGIN PGP SIGNATURE-----

    iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmQ4TY8ACgkQEMKTtsN8 TjZbyRAAsrzNlczYAYlZQtb4iT8qZxHT0VVUwcxoWL7ejlNblGU2WrSFoEdmnqvp E6wy30DL0OhsRd/hmGuwIKfgkuAwQRZzu7+DHIsRfCQvqiQLtS6EUkVz2v/mEARI ROSlGvCKg24hGrnN/BecyWem9hR1iK/o5heWm7CmTFF9Lv9cFUWEBwXNR9a8DtP/ lM9neqX+VDpB33+N0u1jT4BmR0JyG47GyTzNNPoVrYsaRhpyLOIScXFXiuC5Z4J/ pepOKDcIEDTgqfD1l7Z2Yr+L2CUiO0lx6KjSoBw5x4YJYmiLwdA7LdtBKVh0X/zs qBMPpP07Z/wtx6CXmH49KEfuIB4Peai/YBgUeVgq/p5Id7Ztmok+BtURlE0mCQVq h/iUc3G71tFZW7Epa7BxCqb/r0ORElTmZpkyi469qvcJDu0RVXp6UzFnYJYJ1IBY ifiErzixy1i8j/7vcBzhOIWr3jcSVhjHLWx4U1a/3wIkDjKoUfgKtAlQddy60hO3 YJFtevgqofFDaetCK/HlSqoPjOJ0Jcb8AowTuWtWCUE/Dd3ohfWNrjx6kk10ynsV gzbyMqlLx0P6gyEwGlWdmHmLDZ2F8vEjQ7Bmqc8vFs87RyWdfBTFHKvGXjN2dldz K5g7oSh2M+Ln1LrGTRsSMBJS7eFTqVAl1HLxpXEiNBzliJKBx0g=
    =Gmnz
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)