RHSA-2026:6911MediumCVSS 7.5

Red Hat Security Advisory: OpenShift Container Platform 4.12 ztp-site-generate container

Published
April 7, 2026
Last Modified
July 27, 2026

🔗 CVE IDs covered (1)

📋 Description

CVE-2025-65637 — github.com/sirupsen/logrus: github.com/sirupsen/logrus: Denial-of-Service due to large single-line payload

🎯 Affected products2

  • Red Hat OpenShift Container Platform 4.12
  • registry.redhat.io/openshift4/ztp-site-generate-rhel8@sha256:1298753b411c53efdea58e4c8ca9a5199e60c3f17c4302246a62a97702074e6a_amd64 as a component of Red Hat OpenShift Container Platform 4.12

✅ Remediation

For OpenShift Container Platform 4.12, see the following documentation for important instructions about upgrading your cluster and applying this asynchronous errata update: https://docs.redhat.com/en/documentation/openshift_container_platform/4.12/html/release_notes/index Information about accessing this content is available at https://docs.redhat.com/en/documentation/openshift_container_platform/4.12/html-single/updating_clusters/index#updating-cluster-cli Workaround: Mitigation is either unavailable or does not meet Red Hat Product Security standards for usability, deployment, applicability, or stability.

🔗 References (4)