-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 18 Feb 2024 16:46:26 +0100 Source: openvswitch Binary: openvswitch-common openvswitch-common-dbgsym openvswitch-ipsec openvswitch-switch openvswitch-switch-dbgsym openvswitch-testcontroller openvswitch-testcontroller-dbgsym openvswitch-vtep openvswitch-vtep-dbgsym python3-openvswitch python3-openvswitch-dbgsym Architecture: armhf Version: 3.1.0-2+deb12u1 Distribution: bookworm-security Urgency: medium Maintainer: arm Build Daemon (arm-ubc-04) Changed-By: Thomas Goirand Description: openvswitch-common - Open vSwitch common components openvswitch-ipsec - Open vSwitch IPsec tunneling support openvswitch-switch - Open vSwitch switch implementations openvswitch-testcontroller - Simple controller for testing OpenFlow setups openvswitch-vtep - Open vSwitch VTEP utilities python3-openvswitch - Python 3 bindings for Open vSwitch Closes: 1063492 Changes: openvswitch (3.1.0-2+deb12u1) bookworm-security; urgency=medium . * CVE-2023-5366: A flaw was found in Open vSwitch that allows ICMPv6 Neighbor Advertisement packets between virtual machines to bypass OpenFlow rules. This issue may allow a local attacker to create specially crafted packets with a modified or spoofed target IP address field that can redirect ICMPv6 traffic to arbitrary IP addresses. Added upstream patch: "Fix missing masks on a final stage with ports trie". * CVE-2023-3966: Invalid memory access in Geneve with HW offload. Added upstream patch: netdev-offload-tc: Check geneve metadata length (Closes: #1063492). Checksums-Sha1: bfdcf961c4b75378ff611229ec13e8f42724fe6b 6145436 openvswitch-common-dbgsym_3.1.0-2+deb12u1_armhf.deb be6a27a10ae59d0a3b6a6efb8ae6907db6077ae3 1127064 openvswitch-common_3.1.0-2+deb12u1_armhf.deb e6b1f65f6264e1db22087b1e4e133dad3849774d 34192 openvswitch-ipsec_3.1.0-2+deb12u1_armhf.deb 9903f3babc41343df5c511e70d1899ae2e19be4a 9958792 openvswitch-switch-dbgsym_3.1.0-2+deb12u1_armhf.deb 6bf322ca90e5fd56833855a05d236ad655c88e98 1409472 openvswitch-switch_3.1.0-2+deb12u1_armhf.deb f94db5ed002b54387920cf78d7d3945aac7cc3ee 3257340 openvswitch-testcontroller-dbgsym_3.1.0-2+deb12u1_armhf.deb 8e531b94f1c6fec9a56f5063f6966494552a316f 667952 openvswitch-testcontroller_3.1.0-2+deb12u1_armhf.deb 53cb4b03ce202a41651f0cf396ee1506a5af5bc7 894532 openvswitch-vtep-dbgsym_3.1.0-2+deb12u1_armhf.deb 53ed81ed60a840c26ce22fd7217324ef7b87a251 236992 openvswitch-vtep_3.1.0-2+deb12u1_armhf.deb 13af719ed70d4c281e2946f683536426a6554a6b 13429 openvswitch_3.1.0-2+deb12u1_armhf-buildd.buildinfo 701678818073156e47dbd2f0cf801e4ed5a59351 407456 python3-openvswitch-dbgsym_3.1.0-2+deb12u1_armhf.deb 60c39bd1d535a59f582b4608303e75d97431b091 223012 python3-openvswitch_3.1.0-2+deb12u1_armhf.deb Checksums-Sha256: 1b3f8c0cb771e971bdff7cdc3a2aec562ba64397faf7494751ae036c11fa3687 6145436 openvswitch-common-dbgsym_3.1.0-2+deb12u1_armhf.deb 80ec98c477bb5cbf45396999f50dc060fdb5b5eab57db3349f83464f641e09a8 1127064 openvswitch-common_3.1.0-2+deb12u1_armhf.deb 997bd5e66df2bd496cbd65676f15fc849023d68f9b37e897d175a75be554788e 34192 openvswitch-ipsec_3.1.0-2+deb12u1_armhf.deb 3d109bd1ac9e53594a5b936477aca0922d2d62e17bb3a0c20c7348e59aca3de3 9958792 openvswitch-switch-dbgsym_3.1.0-2+deb12u1_armhf.deb 1be4efee6ef678d26b3651c6d8d341ab1737babcd10b79e4bd0121cfa4529fa2 1409472 openvswitch-switch_3.1.0-2+deb12u1_armhf.deb 80bcec9a0de6077c552dc81e1d1bbccbb8b8bb3bce5330ee31baf650679bf29f 3257340 openvswitch-testcontroller-dbgsym_3.1.0-2+deb12u1_armhf.deb 0fbd13cbcdc79ac52d682f717b0e372f7911f947c6b3b3742800679a38d410a0 667952 openvswitch-testcontroller_3.1.0-2+deb12u1_armhf.deb 87e76f5356e093fe84d76044368a5b1d2bb4eea927fd636cf9ada71372edb945 894532 openvswitch-vtep-dbgsym_3.1.0-2+deb12u1_armhf.deb cecf040f5731bfb921acd50aa0b02433853615f619a0f6b8ed3781b92619ca95 236992 openvswitch-vtep_3.1.0-2+deb12u1_armhf.deb 4d303d9a774a026f59024718132e1d0fe779629bfae3ab17feeff6e75cd2d5d3 13429 openvswitch_3.1.0-2+deb12u1_armhf-buildd.buildinfo 9ad52d3ea4cf363990b4a1f59659ae8985963a58ce40924b610f1b02a3121b54 407456 python3-openvswitch-dbgsym_3.1.0-2+deb12u1_armhf.deb 0fc434cc57024ab9ef56850aa00c29cac45db30721dbc233366b3ed11d9afc9f 223012 python3-openvswitch_3.1.0-2+deb12u1_armhf.deb Files: 297f7b61f44aee5b0869a538c7218edf 6145436 debug optional openvswitch-common-dbgsym_3.1.0-2+deb12u1_armhf.deb 4cd3025237669b00354f80fde2f515eb 1127064 net optional openvswitch-common_3.1.0-2+deb12u1_armhf.deb 670a0124aa793a6c643bced393e931da 34192 net optional openvswitch-ipsec_3.1.0-2+deb12u1_armhf.deb 3addd84613f6a46bda51a7637b4a95f4 9958792 debug optional openvswitch-switch-dbgsym_3.1.0-2+deb12u1_armhf.deb 72ae4ec1d325876f1bb4eb49369e6c51 1409472 net optional openvswitch-switch_3.1.0-2+deb12u1_armhf.deb 273995217dc68070ba7b8d97d1100ec6 3257340 debug optional openvswitch-testcontroller-dbgsym_3.1.0-2+deb12u1_armhf.deb 5e43d33b0a0f33ca139f6b8fed5ec74e 667952 net optional openvswitch-testcontroller_3.1.0-2+deb12u1_armhf.deb 03fb019705560a9e3ea901757e0b271e 894532 debug optional openvswitch-vtep-dbgsym_3.1.0-2+deb12u1_armhf.deb 8879773540af778d0d8f506713aad5c6 236992 net optional openvswitch-vtep_3.1.0-2+deb12u1_armhf.deb 35d541740b5f49a11f13c8198b8add84 13429 net optional openvswitch_3.1.0-2+deb12u1_armhf-buildd.buildinfo e690ccea0f3dfb3e71b9363bbde2d1f0 407456 debug optional python3-openvswitch-dbgsym_3.1.0-2+deb12u1_armhf.deb 8a2b8b452a09cd7b9bfa2297f1025b4d 223012 python optional python3-openvswitch_3.1.0-2+deb12u1_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEU5Ohx66NeEdc9V4jWTHLDRjMKsQFAmXxxygACgkQWTHLDRjM KsR6IhAAliulmK/JD8AyMOg7twPuVirDYfeMT5+/2pqmzn/dhasJZpGuwbC4iLuN NqFNJLWwNvAmfZ6SG33HwQQF1Y5SWkUMXD/j0AKvpW6z+P7eKmBERtdckH5Def19 xPziNsEIFAkv104UwajEE7DDdMG7ziV1exrFCe4HSHzqmVXDeSgautkaVM/LyiCz qizh0kA5bsjoSxYBL139mWdDEyAHpe15tjB1F4BjgiyMSiJUrPo2wtY1cCKAj/nZ p4McPzu3kiY8lzMMNnHeibiMn3G6rXhx7U4JlKWw9NeNdsuKAPHJptA9uaT5/B+y X47jbpwQ+9WjvlRimWZKoua1dSVjRI6q9GC0xzclTN5HI2DrRtIRJ0Q0EWkyeR2l fL63yaZAmT7qK1DGERqmpHmOqDu3MFxRFqzB/gazS94a/fHDra5Oh2G1ZtLWReNM xL34lZowHbiiiBSc+2AKacjvv6wkoy8pAAD+7zkaAt7K5qym5eCxg5YrO8+n+RjT Wk+hdzbscsO/epbteGnGN5Q8SR///HbUVikVjNrvtefOqrc70mmujTE74ECI3q3e Jm/QbZrn8UGVAbNFv/zvhv9FOAhVlnHNxLQu7jU7TK0YVJdZyTV7yPPXTegITS7i KKMwnfkXocUYErjQhsB/rld4HLqqjNJtHTC4npFqoeMm3AP2jW0= =tivK -----END PGP SIGNATURE-----