Red Hat Security Advisory: OpenShift Container Platform 4.19.48 security and extras update
🔗 CVE IDs covered (1)
📋 Description
CVE-2026-33814 — net/http/internal/http2: golang: golang.org/x/net: Go HTTP/2: Denial of Service via malformed SETTINGS_MAX_FRAME_SIZE frame
🎯 Affected products170
- Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/ingress-node-firewall-rhel9-operator@sha256:2e79bf9607633916d8f99adc601db5536cc1731c19fbb14832e7060d362c5e2c_ppc64le as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/ingress-node-firewall-rhel9-operator@sha256:6ff75e385cf5e86a7975b0bd15781c4264b542c3eaae6154b322fdaacbcde3c2_arm64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/ingress-node-firewall-rhel9-operator@sha256:ec1f87aa0ef6dd20f7f441a6a2c0d012605a6ab922e552c47e75939d77a1f34a_s390x as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/ingress-node-firewall-rhel9-operator@sha256:f61fd80468849fbd44ab51e2915f9f30b6bdbb12d81002ac2fb5dc924c002155_amd64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/ingress-node-firewall-rhel9@sha256:52ccc55cbb16d57ca17a949c3b5360e76dc43df6224fc1bf182fe9e1185ecca1_arm64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/ingress-node-firewall-rhel9@sha256:80c9792c7996f461a7857094d5c34c2b481889695c2b9009e5e97837936b7ab5_amd64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/ingress-node-firewall-rhel9@sha256:dc9edfaa9f50c396b9972fb39941e3bb299ce6aa068681e0b6e848e917f37fe3_ppc64le as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/ingress-node-firewall-rhel9@sha256:fa51e5459746e614117c0bf0b4ee6f64ad4709857393aec4e593efb39b581de4_s390x as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/kube-compare-artifacts-rhel9@sha256:17a6ddaaa59ece926102cc7b4892b6e41b2a9f0e1a7ad66a7a7c1bbf525bb1a0_amd64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/kube-compare-artifacts-rhel9@sha256:5ca666af6a4c4218699f67e251bb892a852a6c7256b71db618441890bf910634_ppc64le as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/kube-compare-artifacts-rhel9@sha256:7da27d2eea837bbed3345aef05afb2e1c187e8fc87a346c81ce842c853ca6775_s390x as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/kube-compare-artifacts-rhel9@sha256:b0247f5c26c644ae1a07057ec46fdc3b5cf8400e78e8d04df661144e26476662_arm64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/kubernetes-nmstate-rhel9-operator@sha256:798fa1db152a648b578bdf5e23275d55288fd92bc7d7a3c078e0f7702447b118_s390x as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/kubernetes-nmstate-rhel9-operator@sha256:7bbc3b538b62a91bf74f9d1865e3d22dc9e4dc4af6f3f78fb91463394d94560f_arm64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/kubernetes-nmstate-rhel9-operator@sha256:b838fcbf789e72a4bbf6ab160e24e286bd119da85b77173f30c2df224ea941fa_amd64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/kubernetes-nmstate-rhel9-operator@sha256:c9e701c2c6e5255f879f7a739db06052893974daba6dced4176776d4b0b2229b_ppc64le as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/metallb-rhel9-operator@sha256:3fc28a715433ae8999f2cbdf272f24706a8d246cee7be819df7a85ab62987735_s390x as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/metallb-rhel9-operator@sha256:8472c67152a0d94eda7a0bc75cb88b6d52250c5c06d76cad0589c2d29617ddb5_ppc64le as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/metallb-rhel9-operator@sha256:c097969cef8ab793ebfcf7fbf125b28aa9ab696bf0329217b798b3fe885aaf71_arm64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/metallb-rhel9-operator@sha256:c698a0eb2b3e8f92fc870ce20ff9e519e90d64ba96426d36e32a642db781b90f_amd64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/metallb-rhel9@sha256:07413b838eb8e54b9c174244bdf4a15f6b8f8c3ad00045167345b90a482cd9f5_ppc64le as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/metallb-rhel9@sha256:5683c87bcf9378092b9a11b1971985ee675bebb9e1db1749431b14437dc8e2ee_amd64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/metallb-rhel9@sha256:b42fac518e5907e73e7878e6f820e9f05e2d25e61db9a1d5ad3e248da2707386_arm64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/metallb-rhel9@sha256:cc2a3a81f0229104c1e864afda21533280fef5c5de5290f15cf9c056529c966c_s390x as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/nmstate-console-plugin-rhel9@sha256:15b33cfe9532f07b25c75b1f19285cac7b65a02684fed303fb715a0cdc6cd182_amd64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/nmstate-console-plugin-rhel9@sha256:2bcb255c16e8182bd12f0a2afc1b44e2fcd455dff1d20c00b6f261067aaad220_ppc64le as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/nmstate-console-plugin-rhel9@sha256:5fb062e00d321df4f7aa53300b434d79de8bd8483a5b8e8bf818321d1b8c103a_s390x as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/nmstate-console-plugin-rhel9@sha256:e0363e9353efb6f2e1eeac4abb741e0d86a7c39e94c65f7394e5f0ac3c3c4afd_arm64 as a component of Red Hat OpenShift Container Platform 4.19
- registry.redhat.io/openshift4/ose-ansible-rhel9-operator@sha256:0838ef9d7d968e0a1b6298e4927bf39f7dd67315f2b839c3a025f2ff1e681736_s390x as a component of Red Hat OpenShift Container Platform 4.19
- +140 more not shown
✅ Remediation
See the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this asynchronous errata update: https://docs.redhat.com/en/documentation/openshift_container_platform/4.19/html/release_notes/ Details on how to access this content are available at https://docs.redhat.com/en/documentation/openshift_container_platform/4.19/html-single/updating_clusters/index#updating-cluster-cli. Workaround: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.