RHSA-2022:7401MediumCVSS 7.5

Red Hat Security Advisory: OpenShift Container Platform 4.12 security update

Published
January 17, 2023
Last Modified
August 7, 2026

🔗 CVE IDs covered (2)

📋 Description

CVE-2021-38561 — golang: out-of-bounds read in golang.org/x/text/language leads to DoS CVE-2022-27191 — golang: crash in a golang.org/x/crypto/ssh server

🎯 Affected products184

  • Red Hat OpenShift Container Platform 4.12
  • openshift-tech-preview/metallb-rhel8@sha256:297001507f4aec16e7c1b7755536e04f5725303872c20d53119481d5f5a1da8c_amd64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift-tech-preview/metallb-rhel8@sha256:89859ecb133b11484b1cf7c8913a549217481e72fa2213b1f86d927baf208a86_s390x as a component of Red Hat OpenShift Container Platform 4.12
  • openshift-tech-preview/metallb-rhel8@sha256:a67c8a226d4da7a3d90cc270bca0a8330e8869e4c09a3de2a89e8c2f72c88b5f_ppc64le as a component of Red Hat OpenShift Container Platform 4.12
  • openshift-tech-preview/metallb-rhel8@sha256:ce4a4f2eafbb1715473fc168d1c3d2c67d37567c48545470e290031852411804_arm64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/cloud-event-proxy-rhel8@sha256:37d0c28df0d1f5f82a8f2552fa155f2a06f539993700ef191577263b1d016aa5_amd64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/cloud-event-proxy-rhel8@sha256:797e34dd43256c4422cfc74e04433fe89d9f1c1796aa0e1bb99a75ac94b816c0_arm64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/cloud-event-proxy-rhel8@sha256:8fe8305a0991da4f10370983452eac7ed78c16de299f68e81c7de7018e9fc346_ppc64le as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/dpu-network-operator-bundle@sha256:f0aaceca0c01a2128004b720e4cb1be84d5795feac0de833cbcab9fba1227ec2_amd64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/dpu-network-rhel8-operator@sha256:971a6a7a17a6e5c12227b9fcb6d1750a75f11a0ab110043ceb7d373bd2f02d8e_amd64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/dpu-network-rhel8-operator@sha256:ddd5f39a19648a0371e731e8fce60f63bdc81d9d4e7cab9e728301148d645bd3_arm64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/frr-rhel8@sha256:06f09c28b0d85b248c33e7878be16c0d4f1c2399571cd9bd833c5fe7a4ffd543_arm64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/frr-rhel8@sha256:2837b4e29c60cbfe258d7ec7712169e2cbbf6b379ac50df93967f8267f033bfe_s390x as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/frr-rhel8@sha256:682a3616246f86c6c3510d4cc698ddcb32dfb0ba3e3c73193cbb4748bc53241e_ppc64le as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/frr-rhel8@sha256:dbc3a6883c7e3578f07d32666cb04d130bf756ca4d3a2138c17ffbae6d5c0ef2_amd64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/ingress-node-firewall-operator-bundle@sha256:80a2b377de572b3b07136ef1f55a9ba54ba1e0f1a6c8a89a07af26ee73b25d1e_amd64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/ingress-node-firewall-rhel8-operator@sha256:5d3a060802895afbddf88d4d5738184ebacdac6be36458d24295db114d4bb541_s390x as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/ingress-node-firewall-rhel8-operator@sha256:737a43a826c37efba496a26443e620d2818ad5fffbf59fb886fa6422cb998234_amd64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/ingress-node-firewall-rhel8-operator@sha256:c9aac2428d62ba5d8d6b0240de085240da28ef14e912640b40d3aa9f207c9cc3_arm64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/ingress-node-firewall-rhel8-operator@sha256:dd2180f8f1d42488cb148cc83aaa98589a73fef54a655000e5d27e018fc540c9_ppc64le as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/ingress-node-firewall@sha256:2c0d174d240f198f0136460dcbe3ac6c267d03b4076895b3c74b08ebdb2f9f43_s390x as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/ingress-node-firewall@sha256:abe65f0c35e789e331cd0c7c0c4a8297c7c64ac88f721f2a58e6dba2a77bad14_arm64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/ingress-node-firewall@sha256:b178dffb4022b9624563202e23923fc555d4dce70c69da761bca21fde969b38b_ppc64le as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/ingress-node-firewall@sha256:e4cc38f1e346ec7fc062e67b4f18bddc245180f56a8a86b26e1e8b5c7a539e43_amd64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/kubernetes-nmstate-operator-bundle@sha256:cb82b908ce652308141865369edd5f45ea2b52852a924e2faff713158f4c7d7c_amd64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/kubernetes-nmstate-rhel8-operator@sha256:0680faf3bddebf47102800e9088e163d20e53e1a428aef6ca84b76b7c198ec39_arm64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/kubernetes-nmstate-rhel8-operator@sha256:0d9215d0bc446eb341530f21559fc60cf3e345fc5173797a2930cbb88cc509e0_ppc64le as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/kubernetes-nmstate-rhel8-operator@sha256:40a55705281b8ddca1dd6b7da702e7ebe743427c2e7feb5ddb8209569b912205_amd64 as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/kubernetes-nmstate-rhel8-operator@sha256:b3f16db27c98560114bbe3c8213e299beaa9f485351cd07ab1628e7dac413876_s390x as a component of Red Hat OpenShift Container Platform 4.12
  • openshift4/metallb-rhel8-operator@sha256:01feb903eda8a23d5b525dad6713a27ab704f3758e99109c3fdbb9e17641828b_arm64 as a component of Red Hat OpenShift Container Platform 4.12
  • +154 more not shown

✅ Remediation

See the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this asynchronous errata update: https://docs.openshift.com/container-platform/4.12/release_notes/ocp-4-12-release-notes.html Details on how to access this content are available at https://docs.openshift.com/container-platform/4.12/updating/updating-cluster-cli.html

🔗 References (6)