[Bug 2119289] Re: [SRU] ovn 24.03.6 point release
Launchpad Bug Tracker
2119289 at bugs.launchpad.net
Tue Sep 23 09:49:57 UTC 2025
This bug was fixed in the package ovn - 24.03.6-0ubuntu0.24.04.1
---------------
ovn (24.03.6-0ubuntu0.24.04.1) noble; urgency=medium
* New upstream point release 24.03.6 (LP: #2119289).
* d/control: Bump openvswitch-source version.
* d/p/CVE-2025-0650.patch: Drop, redundant after point
release update.
* d/p/lp-2119151-Revert-northd-Don-t-skip-the-unSNAT-stage-for-traffi.patch:
[Hardware Offload] Fix traffic from SNATed networks to Load Balancer
VIPs (LP: #2119151).
-- Martin Kalcok <martin.kalcok at canonical.com> Fri, 01 Aug 2025
08:42:42 +0000
** Changed in: ovn (Ubuntu Noble)
Status: Fix Committed => Fix Released
** CVE added: https://cve.org/CVERecord?id=CVE-2025-0650
--
You received this bug notification because you are a member of Ubuntu
OpenStack, which is subscribed to ovn in Ubuntu.
https://bugs.launchpad.net/bugs/2119289
Title:
[SRU] ovn 24.03.6 point release
Status in ovn package in Ubuntu:
Invalid
Status in ovn source package in Noble:
Fix Released
Bug description:
[Impact]
This release sports mostly bug-fixes and we would like to make sure all of our
supported customers have access to these improvements.
The update contains the following package updates:
* ovn 24.03.6 (noble)
For more details see:
* https://github.com/ovn-org/ovn/compare/v24.03.2...v24.03.6
The new release contains fix for CVE-2025-0650 [0] so the associated
patch is removed from debian/patches.
[0] https://github.com/ovn-
org/ovn/commit/70618a65fd49f1d1d5498927c0bed63e296dafb7
Additional patch [1] is included in debian/patches to solve #2119151
[1] https://github.com/ovn-
org/ovn/commit/39bcc82d5e12d3b00038a29775ee081a6cc4be38
[Test Case]
The following SRU process was followed:
https://wiki.ubuntu.com/OpenStack/StableReleaseUpdates
In order to avoid regression of existing consumers, the OpenStack team will
run their continuous integration test against the packages that are in
-proposed. A successful run of all available tests will be required before the
proposed packages can be let into -updates.
The OpenStack team will be in charge of attaching the output summary of the
executed tests. The OpenStack team members will not mark ‘verification-done’ until
this has happened.
[Regression Potential]
In order to mitigate the regression potential, the results of the
aforementioned tests are attached to this bug.
[other Info]
This is a regular update policy, it follows others, like:
- #2066908 [SRU] ovn 24.03.2 point release
- #2059087 [SRU] ovn 23.09.3 point release
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ovn/+bug/2119289/+subscriptions
More information about the Ubuntu-openstack-bugs
mailing list