RHSA-2022:4860MediumCVSS 7.5

Red Hat Security Advisory: Release of OpenShift Serverless Client kn 1.22.1

Published
June 1, 2022
Last Modified
August 4, 2026

🔗 CVE IDs covered (3)

📋 Description

CVE-2022-23772 — golang: math/big: uncontrolled memory consumption due to an unhandled overflow via Rat.SetString CVE-2022-23773 — golang: cmd/go: misinterpretation of branch names can lead to incorrect access control CVE-2022-23806 — golang: crypto/elliptic: IsOnCurve returns true for invalid field elements

🎯 Affected products5

  • Red Hat OpenShift Serverless 1.0
  • openshift-serverless-clients-0:1.1.0-3.el8.ppc64le as a component of Red Hat OpenShift Serverless 1.0
  • openshift-serverless-clients-0:1.1.0-3.el8.s390x as a component of Red Hat OpenShift Serverless 1.0
  • openshift-serverless-clients-0:1.1.0-3.el8.src as a component of Red Hat OpenShift Serverless 1.0
  • openshift-serverless-clients-0:1.1.0-3.el8.x86_64 as a component of Red Hat OpenShift Serverless 1.0

✅ Remediation

See the Red Hat OpenShift Container Platform 4.6 documentation at: https://access.redhat.com/documentation/en-us/openshift_container_platform/4.6/html/serverless/index See the Red Hat OpenShift Container Platform 4.7 documentation at: https://access.redhat.com/documentation/en-us/openshift_container_platform/4.7/html/serverless/index See the Red Hat OpenShift Container Platform 4.8 documentation at: https://access.redhat.com/documentation/en-us/openshift_container_platform/4.8/html/serverless/index See the Red Hat OpenShift Container Platform 4.9 documentation at: https://access.redhat.com/documentation/en-us/openshift_container_platform/4.9/html/serverless/index See the Red Hat OpenShift Container Platform 4.10 documentation at: https://access.redhat.com/documentation/en-us/openshift_container_platform/4.10/html/serverless/index

🔗 References (11)