RHSA-2023:5447HighCVSS 7.5
Red Hat Security Advisory: Migration Toolkit for Containers (MTC) 1.8.0 security and bug fix update
🔗 CVE IDs covered (1)
📋 Description
CVE-2023-26115 — word-wrap: ReDoS
🎯 Affected products12
- 8Base-RHMTC-1.8
- rhmtc/openshift-migration-controller-rhel8@sha256:a6ffbd8eceec6cbcf1cd9e2a68bf054d83bc503a23e0761f31fd72bc2e0069e5_amd64 as a component of 8Base-RHMTC-1.8
- rhmtc/openshift-migration-hook-runner-rhel8@sha256:4ec5b490b6347b9816102e477e8c65d7fa692d4d8d81830e22d359be136693fc_amd64 as a component of 8Base-RHMTC-1.8
- rhmtc/openshift-migration-log-reader-rhel8@sha256:4545c394465e23cd99f9204a8008074125bf0e54cf14191398fa36297622178c_amd64 as a component of 8Base-RHMTC-1.8
- rhmtc/openshift-migration-must-gather-rhel8@sha256:575ca0d0f249d4cacea752057aa632da0e1b10d409d67ea07c5546ffbfff6ee7_amd64 as a component of 8Base-RHMTC-1.8
- rhmtc/openshift-migration-openvpn-rhel8@sha256:817c27901dd3e98fd43d81193c5a060c31b346616a8634338b3f281e1a11f2f3_amd64 as a component of 8Base-RHMTC-1.8
- rhmtc/openshift-migration-operator-bundle@sha256:0e34493173d117c7018af4ef6c0ab2638442acd01b9aeab9cc3ac0888906148c_amd64 as a component of 8Base-RHMTC-1.8
- rhmtc/openshift-migration-registry-rhel8@sha256:47fc548f5992663a660168b61480b28e9747994ce2763a28c5d09318c1f76e97_amd64 as a component of 8Base-RHMTC-1.8
- rhmtc/openshift-migration-rhel8-operator@sha256:f7a98e85dfeb7e25aac72654958b6daff79e3afbad3e05b4a9c8aab766970065_amd64 as a component of 8Base-RHMTC-1.8
- rhmtc/openshift-migration-rsync-transfer-rhel8@sha256:9f9d3f87ded448205f4e3add44c2867c9df78b21b2f17cb1ecdce7000178d747_amd64 as a component of 8Base-RHMTC-1.8
- rhmtc/openshift-migration-ui-rhel8@sha256:d038c397009aaab72c067c65e3d2f58e77e3d8d8875f3e4d7c01c4d980c88139_amd64 as a component of 8Base-RHMTC-1.8
- rhmtc/openshift-migration-velero-plugin-for-mtc-rhel8@sha256:9c5cfbf88d5a9ed70d7ae1b9685558307b5822c01ed9bdea87002070edadcec7_amd64 as a component of 8Base-RHMTC-1.8
✅ Remediation
For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258
🔗 References (12)
- selfhttps://access.redhat.com/errata/RHSA-2023:5447
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2216827
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2233026
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2233097
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2233103
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2233868
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2238974
- externalhttps://issues.redhat.com/browse/MIG-1331
- externalhttps://issues.redhat.com/browse/MIG-1363
- externalhttps://issues.redhat.com/browse/MIG-1411
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_5447.json