RHSA-2025:19357HighCVSS 7.1

Red Hat Security Advisory: OpenShift Container Platform 4.16.51 CNF IBU extras update

Published
October 30, 2025
Last Modified
August 2, 2026

🔗 CVE IDs covered (1)

📋 Description

CVE-2024-45339 — github.com/golang/glog: Vulnerability when creating log files in github.com/golang/glog

🎯 Affected products4

  • Red Hat OpenShift Container Platform 4.16
  • registry.redhat.io/openshift4/lifecycle-agent-operator-bundle@sha256:691bf435bc9b1dc58a51760311b7d68dcc6b14a6ef2110e28d01fb16ef77af08_amd64 as a component of Red Hat OpenShift Container Platform 4.16
  • registry.redhat.io/openshift4/lifecycle-agent-rhel9-operator@sha256:3b99c82a5a0b08f1d9d0783d443667da87a585ac590c05d750552c426a32d2a0_amd64 as a component of Red Hat OpenShift Container Platform 4.16
  • registry.redhat.io/openshift4/recert-rhel9@sha256:ea110dc078fb0366949c8a6e38ce0e500a854464b943d8af0bc91ea7e1806c8b_amd64 as a component of Red Hat OpenShift Container Platform 4.16

✅ Remediation

For OpenShift Container Platform 4.16, see the following documentation for important instructions about upgrading your cluster and applying this asynchronous errata update: https://docs.redhat.com/en/documentation/openshift_container_platform/4.16/html/release_notes/index Information about accessing this content is available at https://docs.redhat.com/en/documentation/openshift_container_platform/4.16/html-single/updating_clusters/index#updating-cluster-cli Workaround: Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

🔗 References (4)