Red Hat Security Advisory: OpenShift Container Platform 4.12.99 security and extras update
🔗 CVE IDs covered (1)
📋 Description
CVE-2026-33814 — net/http/internal/http2: golang: golang.org/x/net: Go HTTP/2: Denial of Service via malformed SETTINGS_MAX_FRAME_SIZE frame
🎯 Affected products41
- Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/cloud-event-proxy-rhel8@sha256:032b2336f045ea691727d6c2aa9d7082ad29463dfebe0e0ecb2400a83d0fe3b5_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/frr-rhel8@sha256:f2ccecf73c134d45bc1c5269cca20f07c204119f0c089ae8e16f43b95d6042dc_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/kubernetes-nmstate-rhel8-operator@sha256:2f29300e0906fc16601711c02242097db4054bf98294ba66a1ce36ff56c0c596_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/metallb-rhel8-operator@sha256:83d3b12c76de2847cd8723a58c52893b82ffe4df09a70af2616081d4e8a06f47_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/metallb-rhel8@sha256:e8a9f5ce2ce3bdc46e3f0e43f1f8ed5198108eef6c8041e2cd37737ba5242e04_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-ansible-operator@sha256:03ec02f4db9f2756acf5a5cd25ca992d7bb77aec426aa17b55a875ab2176cd58_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-aws-efs-csi-driver-container-rhel8@sha256:0c9451b116bf48e1f7dc978db5ca20544ef4dfbb1fafb76f61899ad7fd095ae6_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-aws-efs-csi-driver-rhel8-operator@sha256:47235f76558edb76fae24820edd6729666f8136450902b2827d69c64870b03cd_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-cloud-event-proxy-rhel8@sha256:032b2336f045ea691727d6c2aa9d7082ad29463dfebe0e0ecb2400a83d0fe3b5_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-cloud-event-proxy@sha256:032b2336f045ea691727d6c2aa9d7082ad29463dfebe0e0ecb2400a83d0fe3b5_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-cluster-capacity@sha256:ee20c15609bd9c91705e47904a0b0af5930379d4d0b761aed61172603153bcbe_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-cluster-nfd-operator@sha256:27b60a0b646432b75c37e673987f53c940ffeebbf4e0887db2823275d98509c9_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-clusterresourceoverride-rhel8-operator@sha256:34215671d8df700b4b96d96aaa3a8ae60b13724f74d4c8cc0ef27b161b587185_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-clusterresourceoverride-rhel8@sha256:d87c723b051eba9ed30ac74404cbf19c8cfe96ef47a045b81120846597380745_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-contour-rhel8@sha256:4bae5261a4c8851689d62a3897b5464f44307b6132bbcbeca2455d33ce836922_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-csi-driver-shared-resource-mustgather-rhel8@sha256:b74bed13c5c6a422efcd3a9adbb2a45eab45901fce0a9d1dcdc376c2c426fdef_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-egress-dns-proxy@sha256:e1cdfc9b948355ce6e19785e456317db263c7ee3730e369b80ac8bbee615d04c_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-egress-http-proxy@sha256:c133877d491d4d0fabbb88ab7734e39119db479e84423213380a09bf96919141_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-egress-router@sha256:801ee45ea6d75e93cb67e1762f2b526a20a4616a8541602299e79c6ecf352553_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-gcp-filestore-csi-driver-rhel8-operator@sha256:9ad2767f80b57843441d846e2e88f38e5f6a4b200a05b27ec25ba1b1e7af2405_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-gcp-filestore-csi-driver-rhel8@sha256:b21d301da66478d09de172ec07560d016f7687f8f282110fac80bb5379ef7976_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-helm-operator@sha256:000d46a2e3a8b800652dbbbfdb96e0bfe7ebe2cedf4a917547f5daae41177329_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-kubernetes-nmstate-handler-rhel8@sha256:0e0ed6ace59908187dfc2d25825611ac3179a2d4793f9edf716925b9d254e064_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-local-storage-diskmaker-rhel9@sha256:1ed2f1e3a00e1627cb17d3ad5e2b8f57888462fef5ec707c01377a4bb06c6173_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-local-storage-mustgather-rhel9@sha256:d5769f9b9eceff8a8683289695db81a22f25870ca8db9cf791da746bbdc23ab1_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-local-storage-rhel9-operator@sha256:ea21b09d32d90c6946c1b8cd923f028e938132450bb5e282c6caa2b89fae83f9_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-node-feature-discovery@sha256:f562c0f1de141d4349a68dde9d8f1f150c4e7cc4e9e68e1dc0c704123bb936de_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-operator-sdk-rhel8@sha256:f22058ff92e53a4eb0346a10eda6b5e4856ad894a6f5727d761a373ce205173c_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- registry.redhat.io/openshift4/ose-ptp-operator@sha256:746accfae6f690c8bf32342f6ef29550b564cb6844fd7cc34a08a22da9f1b4cb_amd64 as a component of Red Hat OpenShift Container Platform 4.12
- +11 more not shown
✅ Remediation
See the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this asynchronous errata update: https://docs.redhat.com/en/documentation/openshift_container_platform/4.12/html/release_notes Details on how to access this content are available at https://docs.redhat.com/en/documentation/openshift_container_platform/4.12/html-single/updating_clusters/index#updating-cluster-within-minor. Workaround: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.