SUSE-SU-2017:2212-1 -- SLES openvswitchID: oval:org.secpod.oval:def:89045012 | Date: (C)2021-07-20 (M)2021-10-28 |
Class: PATCH | Family: unix |
This update for openvswitch fixes the following issues: - CVE-2017-9263: OpenFlow role status message can cause a call to abort leading to application crash - CVE-2017-9265: Buffer over-read while parsing message could lead to crash or maybe arbitrary code execution - Do not restart the ovs-vswitchd and ovsdb-server services on package updates - Do not restart the ovs-vswitchd, ovsdb-server and openvswitch services on package removals. This facilitates potential future package moves but also preserves connectivity when the package is removed
Platform: |
SUSE Linux Enterprise Server 12 SP3 |