RHBA-2020:3180LowCVSS 5.3
Red Hat Bug Fix Advisory: OpenShift Container Platform 4.3.31 bug fix update
🔗 CVE IDs covered (1)
📋 Description
CVE-2020-9283 — golang.org/x/crypto: Processing of crafted ssh-ed25519 public keys allows for panic
🎯 Affected products200
- Red Hat OpenShift Container Platform 4.3
- openshift4/ose-aws-machine-controllers@sha256:ea82048857a4ed1c3ac0275f7339dca9f4492e83959485626701e0a60fac5b1f_amd64 as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-azure-machine-controllers@sha256:004f442912dca5f5ca31ac2dcd4bd9f3a6d44715014e022f19c36158b5a14ffd_amd64 as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-baremetal-machine-controllers@sha256:0471c6177fc0a4b47c8b19d998d864bfbf3b97d0f7d9752f1221a816cc440e4a_amd64 as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-baremetal-machine-controllers@sha256:8604965c79072d2462fe9b1f82a16cddac384ebdd8394fd08cc6ce33cd31ef48_s390x as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-baremetal-machine-controllers@sha256:9193663d04bbc997f924cf0ef698c8e2a707bba8f04ad300ab5b7282a237a5b6_ppc64le as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cli-artifacts@sha256:028f894cc6cfe01b783562849c5e45272e619c2dd2210ef402b63fe8ab4333e4_amd64 as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cli-artifacts@sha256:47fd060f9ede3d23962a85d9c5f2bafc5b4f19ff83efb17862f7831184dc1a56_s390x as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cli-artifacts@sha256:8030cb1d1604d9ffb7dc2439c7e268150371046acd0c1bdd4513d466f7d5280f_ppc64le as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cli@sha256:055b200afa511d730949497f7f89e037bffc56e990b39634a3709ae87db3ec7f_s390x as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cli@sha256:3dc120cc2e93bc9d9bfb2f4d687cc50d98dadcdc8d4d987045bf1856a381e5ad_ppc64le as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cli@sha256:6fbb8cf8808968d5591481c2efdb155bf70d3dc7576d8ee7a51d480b3ee34b97_amd64 as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cloud-credential-operator@sha256:13efd20341443bbf98fa05a2a16ef86bbb9486721d413d941a9341c40eec4947_ppc64le as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cloud-credential-operator@sha256:a01fa14739d87d4a6e31fc9198b75faa18129c88c33b4b791669ae68b7d153ed_s390x as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cloud-credential-operator@sha256:e815ad00a6043ebe630dcd9a9b40f561bb27f9b9e4691e8e5b07581c28b6ce30_amd64 as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-authentication-operator@sha256:5308438ca13547a39d662314bd6faa18b620d4f9232ad8ee7cce1499ba94c714_amd64 as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-authentication-operator@sha256:87d68d46b20ced15de39542b870dcf67ab2a584db3acfe24d10f13a878d94438_ppc64le as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-authentication-operator@sha256:ab7a710936e9bb5ef0bbc7334a71ccb9ad607126428de28b116eb88459a2edb0_s390x as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-autoscaler-operator@sha256:38358bf2c6130f57540a62c72a15a344a3c579dbd0f24df9308a7dde42dacb61_ppc64le as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-autoscaler-operator@sha256:55388a5c09cbb6727ccc4568f768a6bbf980af49bf6e6780418c612c18b514ff_s390x as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-autoscaler-operator@sha256:b5c5267b549f7edf3045928d22831c1d79c5928af7412a67c92d4a9f7bd0308e_amd64 as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-autoscaler@sha256:5f53dd2073fa44da13d0e21872f1d20012cf99cf28f08da29e7447074d09b437_amd64 as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-autoscaler@sha256:79496cd9333d6ed260a45f13b7a9fdffe3b460548a34ee5f4c7f7b885deb558b_ppc64le as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-autoscaler@sha256:b8bf67c8450211d88e8b553659cd1aadb8c19625465e08e3cbfaa3ef570a0bd6_s390x as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-bootstrap@sha256:1f75b858b7989e5e2efc02880ab310187954a045f5d3b6f69347e79697ca8cb2_ppc64le as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-bootstrap@sha256:2123a13ef7d42c3167b86bdaaaa68005eaed6e4ae75c354dd8e50ca84ac508d5_amd64 as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-bootstrap@sha256:d30b59a793f3af2326a27dd111ded4aad449389141024e1cf149518e2e047ea4_s390x as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-config-operator@sha256:13b318471349e8ba1522cfc5a9a9529862f73d36631c739bc5fc6100c0e7a18e_s390x as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-config-operator@sha256:9df02c661c1b1609f23ca3383180c8198f9dcd3b454db2dd9f17ff86e54e24e2_ppc64le as a component of Red Hat OpenShift Container Platform 4.3
- openshift4/ose-cluster-config-operator@sha256:bffb631c396a034d837f67c16dac121e0b805efed69d20b9f3302c72412740a1_amd64 as a component of Red Hat OpenShift Container Platform 4.3
- +170 more not shown
✅ Remediation
For OpenShift Container Platform 4.3 see the following documentation, which will be updated shortly for release 4.3.31, for important instructions on how to upgrade your cluster and fully apply this asynchronous errata update: https://docs.openshift.com/container-platform/4.3/release_notes/ocp-4-3-release-notes.html Details on how to access this content are available at https://docs.openshift.com/container-platform/4.3/updating/updating-cluster-cli.html.
🔗 References (23)
- selfhttps://access.redhat.com/errata/RHBA-2020:3180
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1785718
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1806782
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1815634
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1818806
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1825722
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1826021
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1843877
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1845494
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1846358
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1849152
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1849153
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1851606
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1853171
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1854133
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1854997
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1855072
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1855304
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1856125
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1857159
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1859308
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1859748
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2020/rhba-2020_3180.json