CVE-2024-2182: Red Hat Fast Datapath For Red Hat Enterprise Linux 8

Medium severity, CVSS 6.5. EPSS: 0.8% chance of exploitation in the next 30 days.

A flaw was found in the Open Virtual Network (OVN). In OVN clusters where BFD is used between hypervisors for high availability, an attacker can inject specially crafted BFD packets from inside unprivileged workloads, including virtual machines or containers, that can trigger a denial of service.

Affected products

  • Red Hat Fast Datapath For Red Hat Enterprise Linux 8: before 0:23.06.1-112.el8fdp (fixed in 0:23.06.1-112.el8fdp); before 0:22.12.1-94.el8fdp (fixed in 0:22.12.1-94.el8fdp); before 0:22.03.3-71.el8fdp (fixed in 0:22.03.3-71.el8fdp); before 0:23.03.1-100.el8fdp (fixed in 0:23.03.1-100.el8fdp); before 0:21.12.0-142.el8fdp (fixed in 0:21.12.0-142.el8fdp)
  • Red Hat Fast Datapath For Red Hat Enterprise Linux 9: before 0:23.09.0-136.el9fdp (fixed in 0:23.09.0-136.el9fdp); before 0:23.06.1-112.el9fdp (fixed in 0:23.06.1-112.el9fdp); before 0:22.12.1-94.el9fdp (fixed in 0:22.12.1-94.el9fdp); before 0:22.03.3-71.el9fdp (fixed in 0:22.03.3-71.el9fdp); before 0:23.03.1-100.el9fdp (fixed in 0:23.03.1-100.el9fdp)
  • Red Hat Fast Datapath For Rhel 7
  • Red Hat Fast Datapath For Rhel 8
  • Red Hat Fast Datapath For Rhel 9

Published 2024-03-12. Last modified 2026-06-17.