RHSA-2020:3372MediumCVSS 7.5
Red Hat Security Advisory: Red Hat OpenShift Service Mesh 3scale-istio-adapter-rhel8-container security update
🔗 CVE IDs covered (2)
📋 Description
CVE-2020-9283 — golang.org/x/crypto: Processing of crafted ssh-ed25519 public keys allows for panic CVE-2020-14040 — golang.org/x/text: possibility to trigger an infinite loop in encoding/unicode could lead to crash
🔗 References (6)
- selfhttps://access.redhat.com/errata/RHSA-2020:3372
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1804533
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1853652
- externalhttps://issues.redhat.com/browse/MAISTRA-1716
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2020/rhsa-2020_3372.json