8.1 HIGH
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): HIGH
- Privileges required (PR): NONE
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): HIGH
- Integrity impact (I): HIGH
- Availability impact (A): HIGH
Ovn: egress acls may be bypassed via specially crafted udp packet
A flaw was found in the Open Virtual Network (OVN). Specially crafted UDP packets may bypass egress access control lists (ACLs) in OVN installations configured with a logical switch with DNS records set on it and if the same switch has any egress ACLs configured. This issue can lead to unauthorized access to virtual machines and containers running on the OVN network.
References
- https://www.openwall.com/lists/oss-security/2025/01/22/5
- https://access.redhat.com/security/cve/CVE-2025-0650 x_refsource_REDHAT vdb-entry
- RHBZ#2339537 issue-tracking x_refsource_REDHAT
- http://www.openwall.com/lists/oss-security/2025/01/22/11
- RHBZ#2339537 issue-tracking x_refsource_REDHAT
- https://www.openwall.com/lists/oss-security/2025/01/22/5
- https://access.redhat.com/security/cve/CVE-2025-0650 x_refsource_REDHAT vdb-entry
- http://www.openwall.com/lists/oss-security/2025/01/22/11
- RHSA-2025:1090 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1091 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1092 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1093 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1094 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1095 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1096 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1097 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-0650 x_refsource_REDHAT vdb-entry
- RHBZ#2339537 issue-tracking x_refsource_REDHAT
- https://www.openwall.com/lists/oss-security/2025/01/22/5
- RHSA-2025:1083 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1084 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1085 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1086 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1087 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1088 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1089 vendor-advisory x_refsource_REDHAT
- http://www.openwall.com/lists/oss-security/2025/01/22/11
- RHSA-2025:1095 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1096 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1097 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-0650 x_refsource_REDHAT vdb-entry
- RHBZ#2339537 issue-tracking x_refsource_REDHAT
- https://www.openwall.com/lists/oss-security/2025/01/22/5
- RHSA-2025:1083 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1084 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1085 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1086 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1087 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1088 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1089 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1090 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1091 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1092 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1093 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1094 vendor-advisory x_refsource_REDHAT
- http://www.openwall.com/lists/oss-security/2025/01/22/11
- RHSA-2025:1092 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1093 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1094 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1095 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1096 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1097 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-0650 x_refsource_REDHAT vdb-entry
- RHBZ#2339537 issue-tracking x_refsource_REDHAT
- https://www.openwall.com/lists/oss-security/2025/01/22/5
- RHSA-2025:1083 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1084 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1085 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1086 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1087 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1088 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1089 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1090 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1091 vendor-advisory x_refsource_REDHAT
- http://www.openwall.com/lists/oss-security/2025/01/22/11
- RHSA-2025:1083 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1084 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1085 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1086 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1087 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1088 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1089 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1090 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1091 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1092 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1093 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1094 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1095 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1096 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1097 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-0650 x_refsource_REDHAT vdb-entry
- RHBZ#2339537 issue-tracking x_refsource_REDHAT
- https://www.openwall.com/lists/oss-security/2025/01/22/5
- http://www.openwall.com/lists/oss-security/2025/01/22/11
- RHSA-2025:1083 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1084 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1085 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1086 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1087 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1088 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1089 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1090 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1091 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1092 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1093 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1094 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1095 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1096 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1097 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-0650 x_refsource_REDHAT vdb-entry
- RHBZ#2339537 issue-tracking x_refsource_REDHAT
- https://www.openwall.com/lists/oss-security/2025/01/22/5
- http://www.openwall.com/lists/oss-security/2025/01/22/11
- RHSA-2025:1094 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1095 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1096 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1097 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-0650 x_refsource_REDHAT vdb-entry
- RHBZ#2339537 issue-tracking x_refsource_REDHAT
- https://www.openwall.com/lists/oss-security/2025/01/22/5
- RHSA-2025:1083 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1084 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1085 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1086 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1087 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1088 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1089 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1090 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1091 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1092 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1093 vendor-advisory x_refsource_REDHAT
- http://www.openwall.com/lists/oss-security/2025/01/22/11
- RHSA-2025:1093 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1094 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1095 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1096 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1097 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-0650 x_refsource_REDHAT vdb-entry
- RHBZ#2339537 issue-tracking x_refsource_REDHAT
- https://www.openwall.com/lists/oss-security/2025/01/22/5
- RHSA-2025:1083 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1084 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1085 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1086 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1087 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1088 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1089 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1090 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1091 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1092 vendor-advisory x_refsource_REDHAT
- http://www.openwall.com/lists/oss-security/2025/01/22/11
- RHSA-2025:1093 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1094 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1095 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1096 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1097 vendor-advisory x_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2025-0650 x_refsource_REDHAT vdb-entry
- RHBZ#2339537 issue-tracking x_refsource_REDHAT
- https://www.openwall.com/lists/oss-security/2025/01/22/5
- RHSA-2025:1083 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1084 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1085 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1086 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1087 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1088 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1089 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1090 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1091 vendor-advisory x_refsource_REDHAT
- RHSA-2025:1092 vendor-advisory x_refsource_REDHAT
- http://www.openwall.com/lists/oss-security/2025/01/22/11
Affected products
- ==24.03.5
- ==24.09.2
- ==22.03.8
- *
- *
- *
- *
- *
- *
- *
- *
- *
Matching in nixpkgs
pkgs.nanovna-qt
PC GUI software for NanoVNA V2 series
-
nixos-unstable -
- nixpkgs-unstable 20200403
pkgs.nanovna-saver
Tool for reading, displaying and saving data from the NanoVNA
-
nixos-unstable -
- nixpkgs-unstable 0.7.3
Package maintainers
-
@chuangzhu Chuang Zhu <nixos@chuang.cz>
-
@hesiod Tobias Markus <tobias@markus-regensburg.de>
-
@zaninime Francesco Zanini <francesco@zanini.me>
-
@NeverBehave Xinhao Luo <i@never.pet>
-
@adamcstephens Adam C. Stephens <happy.plan4249@valkor.net>
-
@booxter Ihar Hrachyshka <ihar.hrachyshka@gmail.com>
-
@nh2 Niklas Hambüchen <mail@nh2.me>