RHSA-2020:3783: Moderate: OpenShift Container Platform 4.4.23 cluster-network-operator-container security update
OpenShift Container Platform components are primarily written in Go(golang).The golang.org/x/text contains text-related packages which are used fortext operations, such as character encodings, text transformations, andlocale-specific text handling.Security Fix(es): golang.org/x/text: possibility to trigger an infinite loop in encoding/unicode could lead to crash (CVE-2020-14040) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:3783?
The severity of RHSA-2020:3783 is classified as moderate.
How do I fix RHSA-2020:3783?
To fix RHSA-2020:3783, update the affected OpenShift Container Platform components to the patched versions provided in the advisory.
What components are affected by RHSA-2020:3783?
RHSA-2020:3783 affects OpenShift Container Platform components that utilize the golang.org/x/text packages.
What types of vulnerabilities are addressed in RHSA-2020:3783?
RHSA-2020:3783 addresses security vulnerabilities related to text operations and character encodings in Go packages.
Is there a specific workaround for RHSA-2020:3783?
There are no specific workarounds for RHSA-2020:3783 other than applying the recommended updates.