RHSA-2020:2793: Low: OpenShift Container Platform 4.4.11 atomic-openshift-descheduler-container security update
Red Hat OpenShift Container Platform is Red Hat's cloud computingKubernetes application platform solution designed for on-premise or privatecloud deployments.Security Fix(es): golang.org/x/crypto: Processing of crafted ssh-ed25519 public keys allowed for panic (CVE-2020-9283) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:2793?
The severity of RHSA-2020:2793 is classified as low.
How do I fix RHSA-2020:2793?
To fix RHSA-2020:2793, upgrade the affected packages to their latest version as recommended in the advisory.
What components are affected by RHSA-2020:2793?
RHSA-2020:2793 primarily affects the golang.org/x/crypto library and its handling of crafted ssh-ed25519 public keys.
Is RHSA-2020:2793 related to any public vulnerabilities?
Yes, RHSA-2020:2793 was issued due to a vulnerability that allows for potential panic when processing crafted ssh-ed25519 public keys.
When was RHSA-2020:2793 released?
RHSA-2020:2793 was released on December 17, 2020.