[Bug 1575119] Update Released
Martin Pitt
martin.pitt at ubuntu.com
Mon Jun 20 09:21:14 UTC 2016
The verification of the Stable Release Update for openvswitch has
completed successfully and the package has now been released to
-updates. Subsequently, the Ubuntu Stable Release Updates Team is being
unsubscribed and will not receive messages about this bug report. In
the event that you encounter a regression using the package from
-updates please report a new bug using ubuntu-bug and tag the bug report
regression-update so we can easily find any regressions.
--
You received this bug notification because you are a member of Ubuntu
OpenStack, which is subscribed to openvswitch in Ubuntu.
https://bugs.launchpad.net/bugs/1575119
Title:
[SRU] Open vSwitch 2.4.1, 2.3.3 stable updates
Status in Ubuntu Cloud Archive:
Invalid
Status in Ubuntu Cloud Archive kilo series:
Triaged
Status in Ubuntu Cloud Archive liberty series:
Fix Committed
Status in openvswitch package in Ubuntu:
Invalid
Status in openvswitch source package in Wily:
Fix Released
Bug description:
The Open vSwitch team is pleased to announce the release of Open
vSwitch 2.4.1:
http://openvswitch.org/releases/openvswitch-2.4.1.tar.gz
and Open vSwitch 2.3.3:
http://openvswitch.org/releases/openvswitch-2.3.3.tar.gz
Both of these releases contain bug fixes. Most importantly, they
address a remote execution vulnerability in MPLS parsing
(CVE-2016-2074):
http://openvswitch.org/pipermail/announce/2016-March/000082.html
We recommend immediately upgrading to a patched version. If you do
not want the other fixes, the advisory above contain patches that may
be applied to the previous releases.
Note that Open vSwitch 2.5.x is not affected by this issue.
We would like to thank the reporters: Kashyap Thimmaraju and Bhargava
Shastry.
Enjoy!
--The Open vSwitch Team
To manage notifications about this bug go to:
https://bugs.launchpad.net/cloud-archive/+bug/1575119/+subscriptions
More information about the Ubuntu-openstack-bugs
mailing list