RHSA-2022:5069HighCVSS 9.8

Red Hat Security Advisory: OpenShift Container Platform 4.11.0 bug fix and security update

Published
August 10, 2022
Last Modified
July 18, 2026

🔗 CVE IDs covered (13)

📋 Description

CVE-2021-23566 — nanoid: Information disclosure via valueOf() function CVE-2021-23648 — sanitize-url: XSS due to improper sanitization in sanitizeUrl function CVE-2021-41190 — opencontainers: OCI manifest and index parsing confusion CVE-2021-43565 — golang.org/x/crypto: empty plaintext packet causes panic CVE-2021-44906 — minimist: prototype pollution CVE-2022-0235 — node-fetch: exposure of sensitive information to an unauthorized actor CVE-2022-21698 — prometheus/client_golang: Denial of service using InstrumentHandlerCounter CVE-2022-26945 — go-getter: command injection vulnerability CVE-2022-27191 — golang: crash in a golang.org/x/crypto/ssh server CVE-2022-29810 — go-getter: writes SSH credentials into logfile, exposing sensitive credentials to local uses CVE-2022-30321 — go-getter: unsafe download (issue 1 of 3) CVE-2022-30322 — go-getter: unsafe download (issue 2 of 3) CVE-2022-30323 — go-getter: unsafe download (issue 3 of 3)

🔗 References (1398)