RHSA-2022:5915MediumCVSS 7.5
Red Hat Security Advisory: Red Hat Kiali for OpenShift Service Mesh 2.2 security update
🔗 CVE IDs covered (1)
📋 Description
CVE-2022-31129 — moment: inefficient parsing algorithm resulting in DoS
🎯 Affected products7
- RHOSSM 2.2 for RHEL 8
- openshift-service-mesh/kiali-rhel8-operator@sha256:2b32520bb29e7c80e3cd74b2f330480916542776add6b0cfdf10ab63b4d73f8c_ppc64le as a component of RHOSSM 2.2 for RHEL 8
- openshift-service-mesh/kiali-rhel8-operator@sha256:aa2454a64464f37228ec6126198d1bcd535912cbaecdae3fa6a19ec204d3006a_amd64 as a component of RHOSSM 2.2 for RHEL 8
- openshift-service-mesh/kiali-rhel8-operator@sha256:e93f3dac95c43b23146602659e7fa787851194d58452a2164b772e85501d3e14_s390x as a component of RHOSSM 2.2 for RHEL 8
- openshift-service-mesh/kiali-rhel8@sha256:0b257ea1f093cc346c29d28cc76042b8548960bc82828bbec32b2ef6bcc67748_amd64 as a component of RHOSSM 2.2 for RHEL 8
- openshift-service-mesh/kiali-rhel8@sha256:24710c5393e55e60cdb647cae8339bdba54a2fb6f06bfa311e4a89786157525a_ppc64le as a component of RHOSSM 2.2 for RHEL 8
- openshift-service-mesh/kiali-rhel8@sha256:bb40e220b9433a6cf6dfbd5ac1c2555cf15c27550eb1760da52a12d8c1296fcc_s390x as a component of RHOSSM 2.2 for RHEL 8
✅ Remediation
For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258
🔗 References (5)
- selfhttps://access.redhat.com/errata/RHSA-2022:5915
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2105075
- externalhttps://issues.redhat.com/browse/OSSM-1821
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_5915.json