RHSA-2023:4437MediumCVSS 6.5

Red Hat Security Advisory: Red Hat OpenShift Data Foundation 4.13.1 security and bug fix update

Published
August 2, 2023
Last Modified
August 4, 2026

🔗 CVE IDs covered (1)

📋 Description

CVE-2023-3089 — openshift: OCP & FIPS mode

🎯 Affected products84

  • RHODF 4.13 for RHEL 9
  • odf4/cephcsi-rhel9@sha256:0546a7d05bf027816fe47e873527516ce2a5415eb7fc10dc6751e33d07d8f8cf_ppc64le as a component of RHODF 4.13 for RHEL 9
  • odf4/cephcsi-rhel9@sha256:db1204871190698b2cdea55bc474adbb89d3b12d7dfb3cf4ff79f301703693aa_amd64 as a component of RHODF 4.13 for RHEL 9
  • odf4/cephcsi-rhel9@sha256:e16ff17fbc75adc541ef551c14f9b3bdb4e8ddf193cba9e584997e3fa5215db8_s390x as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-cli-rhel9@sha256:06b551bb427c765bdc8c1152af299ec5bcf267663a93a024b036bdcd501eb42a_arm64 as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-cli-rhel9@sha256:55fe67c756bc266cd62ae7ee501e71c16bef92689d68f5ce77ea77cbbf6ef805_s390x as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-cli-rhel9@sha256:b45f7ec1015d98ddd06f1a778d4fe3c5a1a5cb6535048d5ef615e52b9b114530_amd64 as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-cli-rhel9@sha256:eda49c283a090a4dcdd0e16f2b655c8d36f7f9cbf5a083a0962bf0df8383a8eb_ppc64le as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-core-rhel9@sha256:65962b0f8f7f811977ee5c7f95755a44791bcd84c0e3db7aa886ba27317f9be8_arm64 as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-core-rhel9@sha256:a99416cbb0afbe55ff6b8ec968342480223f4d0cc90cd68a31491dec8f080027_amd64 as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-core-rhel9@sha256:aabc76e924696152927d8d064191136829ac83d77f629a6ce5e8949a720fa3aa_s390x as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-core-rhel9@sha256:c4ebd9e7a0fe8925275c7f4d6151cc0498f1dbbe722efe7ad5a6a58c17818d80_ppc64le as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-operator-bundle@sha256:9e552b7f9aa31c44a29c18c5217b8a2f04dd0091d4265e6ac35f09ac0ef5517e_s390x as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-operator-bundle@sha256:c121cf02ee57b15729377a65cd00acf44eb2727bf8efd0d90cef620f285709ff_amd64 as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-operator-bundle@sha256:d3e7fae38130f5a0bbe87b91b2b3d8a6bdc05c2b1c2d3b3b636df08c74ed6e1f_ppc64le as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-rhel9-operator@sha256:0c83a1e2f4f5b90f274d2df5aa0c42b7383bc6bee5a074ee84ed5523f6ea3ecc_arm64 as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-rhel9-operator@sha256:485702326aba60670eead033aeb862550d053edaa31ffa722052fdb853a07274_s390x as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-rhel9-operator@sha256:5a3ecefac41fe422901de46c356228731cc5dbedf08604083a08a1233c9dafd4_ppc64le as a component of RHODF 4.13 for RHEL 9
  • odf4/mcg-rhel9-operator@sha256:f25fd47b7b570ffe3bbc4b3282a1813d201be0dac5678590bff7090053107ebd_amd64 as a component of RHODF 4.13 for RHEL 9
  • odf4/ocs-client-operator-bundle@sha256:1f8f4de9ae7cb7a45f118a06d31290b7d93bfb02d5312e42fca98cd2200f5424_amd64 as a component of RHODF 4.13 for RHEL 9
  • odf4/ocs-client-operator-bundle@sha256:28127dcd3a21a30ccf7d545494b8d947c14f0f2ba1418f559d73f4997bdb83bd_s390x as a component of RHODF 4.13 for RHEL 9
  • odf4/ocs-client-operator-bundle@sha256:728724d536dc501b077bafa03d9d15a512c3a192269a1e616afb8aa6072145cb_ppc64le as a component of RHODF 4.13 for RHEL 9
  • odf4/ocs-client-rhel9-operator@sha256:7ffcea75ae1fb5297083fe062d2a32e5f66ed72cdc6b08ba778a2ccf1404eaac_amd64 as a component of RHODF 4.13 for RHEL 9
  • odf4/ocs-client-rhel9-operator@sha256:9766eee2586d671e1e57ebd817eaed18a97692cdbea8dd6b0297f474dc3856e2_arm64 as a component of RHODF 4.13 for RHEL 9
  • odf4/ocs-client-rhel9-operator@sha256:afc290386fd027bc91490965b2b082b3bd30a84506346c904228bc7dcf5631b4_ppc64le as a component of RHODF 4.13 for RHEL 9
  • odf4/ocs-client-rhel9-operator@sha256:b5c9f8765f50eca7f773f4c8df4e210d704c58b812f5ac9fdd68a1c0419e1faa_s390x as a component of RHODF 4.13 for RHEL 9
  • odf4/ocs-metrics-exporter-rhel9@sha256:77487dd8359dcec1fdbabfe8cd0f243231b9f281184526ab5494533b5a5fc9b0_s390x as a component of RHODF 4.13 for RHEL 9
  • odf4/ocs-metrics-exporter-rhel9@sha256:de0c7f4ca915efb70e74b342adeabd0247df20cb400118b3dfe71fc3470fd052_amd64 as a component of RHODF 4.13 for RHEL 9
  • odf4/ocs-metrics-exporter-rhel9@sha256:f01d4c6d75bc57aaf1b5556f169fab5d1501d856d45ba69cd9a5aad50001d42c_ppc64le as a component of RHODF 4.13 for RHEL 9
  • odf4/ocs-operator-bundle@sha256:5918d1291ddb16449e48e3d3cb70f254fa65145a22b9ac81da31c5d6fa677354_s390x as a component of RHODF 4.13 for RHEL 9
  • +54 more not shown

✅ Remediation

For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Workaround: Red Hat has investigated whether a possible mitigation exists for this issue, and has not been able to identify a practical example. Please update the affected packages as soon as possible.

🔗 References (12)