RHSA-2023:4090MediumCVSS 7.5

Red Hat Security Advisory: OpenShift Container Platform 4.13.5 security update

Published
July 20, 2023
Last Modified
August 7, 2026

🔗 CVE IDs covered (2)

📋 Description

CVE-2022-41717 — golang: net/http: excessive memory growth in a Go server accepting HTTP/2 requests CVE-2022-41723 — golang.org/x/net/http2: avoid quadratic complexity in HPACK decoding

🎯 Affected products166

  • Red Hat OpenShift Container Platform 4.13
  • openshift-tech-preview/metallb-rhel8@sha256:94e8614829660c6badf091964c7d59daede0ba681c05e7834e6684845ea74c72_arm64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift-tech-preview/metallb-rhel8@sha256:950f322aa2c12ba6b756ab826da4443070e2351c5db732a693a1696302929086_s390x as a component of Red Hat OpenShift Container Platform 4.13
  • openshift-tech-preview/metallb-rhel8@sha256:9c612af777d2b48e1a7a4ab3c8c3e37eceb6e5831d765ed56c26ef631c9713f1_amd64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift-tech-preview/metallb-rhel8@sha256:fe8a7726765abd6218295fc9961b1607bcb16666b14ae7ba817f41018654f6ab_ppc64le as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/dpu-network-rhel8-operator@sha256:1da2effd3f99dafc094ce06f306ecab9bbff8ed40f033880185b78c2490e4c93_arm64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/dpu-network-rhel8-operator@sha256:aa60e888e0725bfcd027a134f600a580ffdff1290b818e5368f676bd2ad30f2f_amd64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/frr-rhel8@sha256:574d0ca333b6863d1f20aee0cca9db78d7b89b0412c12518b1c202831f7d4015_amd64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/frr-rhel8@sha256:bcd000fae0841ce9948ec6c1b9e0dd76eaf8b2e5c75c6b558852c7812a58ee02_ppc64le as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/frr-rhel8@sha256:cfb078d207ce931acb5bceb978690a3d6b795ba893e20745bfefd0fe3508f8c5_arm64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/frr-rhel8@sha256:e79f8c91e08d6424654056bd4db3e1424fa0ccb3254191e4495c89be9b478118_s390x as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/ingress-node-firewall-rhel8-operator@sha256:0e07c372c26f68e3284021104b52357fae049dd1853ae97ddf67ebf6fa43919e_arm64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/ingress-node-firewall-rhel8-operator@sha256:a73a5befdf34c153f0bc095ecce2bd66b7c3823c617a7369c5e30017b34cc844_ppc64le as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/ingress-node-firewall-rhel8-operator@sha256:aad0b1d519abef572d4ce42c3a9a11369738a6eb27a330a28b674f976a28bcd7_amd64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/ingress-node-firewall-rhel8-operator@sha256:c8601852efb6b725e18b4a1358126c2caa9468385404e9566b486b8e0c0e18be_s390x as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/ingress-node-firewall@sha256:057d5c76857650312bbfca299aac81c26665747358d7e69f8a23fd0c54103cd9_arm64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/ingress-node-firewall@sha256:5c9e9274b46f658481f85c053bb4c9b6dad0561cd85d53f321f700129d2a082c_s390x as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/ingress-node-firewall@sha256:c076b3f3b46f8abd4bcac6e2daac78c527d1e48411c62a1092bb5035e4c36c54_ppc64le as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/ingress-node-firewall@sha256:f24f6008bd1bd5506c1f2b4a2e268e6b9577b679f913fe08ccbc30adee03d543_amd64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/kubernetes-nmstate-rhel8-operator@sha256:282f19603b00baf84b32977c94df8b44e6fdcd5401f3842c16850429f2009084_arm64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/kubernetes-nmstate-rhel8-operator@sha256:5c24dc743a2dfa3187ec99eca3c402c2f02e23dc94a47e0e63a3897372b7f84e_amd64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/kubernetes-nmstate-rhel8-operator@sha256:8924c5daeae9246db1171ca4c65e0c0a879c3e5bee34e319c5a7fb1226212e36_s390x as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/kubernetes-nmstate-rhel8-operator@sha256:ff95b68372db7295c4ffda89570d10707fbd164bce0c917c5e0e6fbf0d60fa98_ppc64le as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/metallb-rhel8-operator@sha256:0e76111c278703e118bea781237932f6ac9a2c7d6a94f058e0179f34aadf6f6a_s390x as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/metallb-rhel8-operator@sha256:2e061a081ee2b7588e0c9aa0f34dbcb9ca131c92cb979de92b3d3ba5a64dce7b_ppc64le as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/metallb-rhel8-operator@sha256:c2a005ef33577022ca4bcc6f2920ff8a4eaf516321809951eec2ee63c33e1a06_arm64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/metallb-rhel8-operator@sha256:ce48c1d09b4895557f4b3b0035faf2d9814a2a26ff925f8416926a98481a6680_amd64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/metallb-rhel8@sha256:94e8614829660c6badf091964c7d59daede0ba681c05e7834e6684845ea74c72_arm64 as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/metallb-rhel8@sha256:950f322aa2c12ba6b756ab826da4443070e2351c5db732a693a1696302929086_s390x as a component of Red Hat OpenShift Container Platform 4.13
  • openshift4/metallb-rhel8@sha256:9c612af777d2b48e1a7a4ab3c8c3e37eceb6e5831d765ed56c26ef631c9713f1_amd64 as a component of Red Hat OpenShift Container Platform 4.13
  • +136 more not shown

✅ Remediation

For OpenShift Container Platform 4.13 see the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this asynchronous errata update: https://docs.openshift.com/container-platform/4.13/release_notes/ocp-4-13-release-notes.html

🔗 References (8)