RHSA-2026:0702HighCVSS 8.6

Red Hat Security Advisory: OpenShift Container Platform 4.17.47 bug fix and security update

Published
January 22, 2026
Last Modified
June 2, 2026

🔗 CVE IDs covered (8)

📋 Description

CVE-2025-5987 — libssh: Invalid return code for chacha20 poly1305 with OpenSSL backend CVE-2025-8677 — bind: Resource exhaustion via malformed DNSKEY handling CVE-2025-9230 — openssl: Out-of-bounds read & write in RFC 3211 KEK Unwrap CVE-2025-9714 — libxslt: libxml2: Inifinite recursion at exsltDynMapFunction function in libexslt/dynamic.c CVE-2025-11234 — qemu-kvm: VNC WebSocket handshake use-after-free CVE-2025-40778 — bind: Cache poisoning attacks with unsolicited RRs CVE-2025-40780 — bind: Cache poisoning due to weak PRNG CVE-2025-59375 — firefox: thunderbird: expat: libexpat in Expat allows attackers to trigger large dynamic memory allocations via a small document that is submitted for parsing

🔗 References (11)