RHSA-2022:6287MediumCVSS 7.5
Red Hat Security Advisory: OpenShift Container Platform 4.11.3 packages and security update
🔗 CVE IDs covered (1)
📋 Description
CVE-2021-38561 — golang: out-of-bounds read in golang.org/x/text/language leads to DoS
🎯 Affected products200
- Red Hat OpenShift Container Platform 4.11
- openshift4/cloud-network-config-controller-rhel8@sha256:05898a5fcb9068c8bde0eaee15b6883e6899575217ae8778444663c208291ea5_ppc64le as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/cloud-network-config-controller-rhel8@sha256:0bfabc30a898fada5f60b1a054bca03aaa2bcc839cc02cba3cf8ee311351f1ff_s390x as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/cloud-network-config-controller-rhel8@sha256:0c85b5e7a1540b338e0e0e64efa20fe3e07e958a0224e384c82ad87f17042fbd_arm64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/cloud-network-config-controller-rhel8@sha256:d15b80f2476549056713373208ce90480641bbd364c7a0b2b75e348ffc3cdb54_amd64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/driver-toolkit-rhel8@sha256:06166b14b36aa6cea2ab1a0a977817646c8cc1bda8bd959418052c104d0bff50_ppc64le as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/driver-toolkit-rhel8@sha256:43c7e0008247cacd14f25e5240b8c4904c2a0678e583906e22e10a901954cdc7_arm64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/driver-toolkit-rhel8@sha256:7a040876b00508613bdd759afa595e6d9ffd5a94ac3097f8e593109e83bdcad3_amd64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/driver-toolkit-rhel8@sha256:92af2ce649cf210e7dd867df0900a585b0280908fc2f8c027b1ae083d2cc687a_s390x as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/egress-router-cni-rhel8@sha256:03845e6143439bcbf65be447fedcece25e57e7312ff594eac3bc4258444259eb_amd64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/egress-router-cni-rhel8@sha256:41343e80a80f6cfa307c22be34dd7a28764c288e9e9c7cb073532b395854b491_s390x as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/egress-router-cni-rhel8@sha256:66bdfad38fb6b58c9a46fd2276e57b95af1841052d72b03a130fb40308c69fe2_ppc64le as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/egress-router-cni-rhel8@sha256:b30550e137585dad8c99c4d5dbccde8bd5ce8b8943e2d1193e25c300fa8b6010_arm64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/network-tools-rhel8@sha256:0e042ba7d76e756425133d9d486c1b6071f1a21820d83e065e34fcbea27e7e28_arm64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/network-tools-rhel8@sha256:3efc1df600078a88e060a8fe4b2933ff3aac347b334a5a1dd167945bbf33a83c_amd64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/network-tools-rhel8@sha256:76af08990123a23c16102dab827a91a5c14a7f022f2ea629c971cccfd94fcd0f_ppc64le as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/network-tools-rhel8@sha256:bac3ce1a9b11ba9813b09cd824b5e519ef4b535a635871ec38be8f408ac7fa07_s390x as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/oc-mirror-plugin-rhel8@sha256:33d50b1827e621aa88ff52fa06cb1a7baf67b84fd073d98b6017eaf7c785567f_amd64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/ose-agent-installer-api-server-rhel8@sha256:4c5a8fbe8160deaa6afc973bad88c486507125ae17990f6374e864258f55df60_s390x as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/ose-agent-installer-api-server-rhel8@sha256:99460d1774ecae58c25b8c04358921d2e7756744ff5b005148242202292f8bf9_ppc64le as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/ose-agent-installer-api-server-rhel8@sha256:d6b24f784a398846dc8a21236f8013a07a995d398e7ce1e4a5f82d0ab221fc14_amd64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/ose-agent-installer-api-server-rhel8@sha256:faa557d6a0243760d0ae048af6e8004aa7312b4f5246b35b806c614a2e2ddb42_arm64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/ose-agent-installer-csr-approver-rhel8@sha256:0b45588c5cecd2a54a7dd8a457dafc5150aac0245217d8134cc0cdfa66740a67_arm64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/ose-agent-installer-csr-approver-rhel8@sha256:2b473e8014c8143a87026a72f6f066349e2c9d35ff1434eed4f1d448b6f765e9_amd64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/ose-agent-installer-csr-approver-rhel8@sha256:e08fdaa00d19000ed55914ab320d0f59c4de533ede377795a206b310be857718_ppc64le as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/ose-agent-installer-csr-approver-rhel8@sha256:fff1ef72e922227f5ecc102a28170820b2572af4218ff1603cc99eda6369979d_s390x as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/ose-agent-installer-node-agent-rhel8@sha256:097f19da142728fcd8705c179b2e0d96c766c2b0ae411b69dbfa6ae411dc517f_ppc64le as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/ose-agent-installer-node-agent-rhel8@sha256:205dc63e558b41a5ac663f653bae0f451fff1cc0b5aef7626ee8465566e317a8_arm64 as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/ose-agent-installer-node-agent-rhel8@sha256:d7225de2d30d39b14f53b39f2ed22715e380aaeb68c166baaf7f97e11e632d01_s390x as a component of Red Hat OpenShift Container Platform 4.11
- openshift4/ose-agent-installer-node-agent-rhel8@sha256:faa72c6a7ae85b0ad9356c5bb2e29245d57353af38f127befef5f1eddfbfed5b_amd64 as a component of Red Hat OpenShift Container Platform 4.11
- +170 more not shown
✅ Remediation
For OpenShift Container Platform 4.11 see the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this asynchronous errata update: https://docs.openshift.com/container-platform/4.11/release_notes/ocp-4-11-release-notes.html Details on how to access this content are available at https://docs.openshift.com/container-platform/4.11/updating/updating-cluster-cli.html
🔗 References (39)
- selfhttps://access.redhat.com/errata/RHSA-2022:6287
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1989398
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2062152
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2076402
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2096456
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2100495
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2103127
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2105972
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2107564
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2108014
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2109642
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2109943
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2110407
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2110524
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2111901
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2114681
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2115481
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2115561
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2115807
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2116265
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2116288
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2117462
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2117594
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2117823
- externalhttps://issues.redhat.com/browse/OCPBUGS-263
- externalhttps://issues.redhat.com/browse/OCPBUGS-306
- externalhttps://issues.redhat.com/browse/OCPBUGS-429
- externalhttps://issues.redhat.com/browse/OCPBUGS-433
- externalhttps://issues.redhat.com/browse/OCPBUGS-453
- externalhttps://issues.redhat.com/browse/OCPBUGS-465
- externalhttps://issues.redhat.com/browse/OCPBUGS-515
- externalhttps://issues.redhat.com/browse/OCPBUGS-516
- externalhttps://issues.redhat.com/browse/OCPBUGS-658
- externalhttps://issues.redhat.com/browse/OCPBUGS-688
- externalhttps://issues.redhat.com/browse/OCPBUGS-727
- externalhttps://issues.redhat.com/browse/OCPBUGS-737
- externalhttps://issues.redhat.com/browse/OCPBUGS-756
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_6287.json