RHSA-2022:5070MediumCVSS 7.5
Red Hat Security Advisory: OpenShift Container Platform 4.11.0 extras and security update
🔗 CVE IDs covered (3)
📋 Description
CVE-2021-38561 — golang: out-of-bounds read in golang.org/x/text/language leads to DoS CVE-2022-21698 — prometheus/client_golang: Denial of service using InstrumentHandlerCounter CVE-2022-24778 — imgcrypt: Unauthorized access to encryted container image on a shared system due to missing check in CheckAuthorization() code path
🔗 References (24)
- selfhttps://access.redhat.com/errata/RHSA-2022:5070
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2042536
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2042652
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2045880
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2047308
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2055049
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2055436
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2055439
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2057569
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2058256
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2062849
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2066860
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2066887
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2066889
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2067312
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2077243
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2087511
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2089962
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2090774
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2091106
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2091142
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2100495
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_5070.json