RHSA-2020:5149: Moderate: Release of OpenShift Serverless 1.11.0
Red Hat OpenShift Serverless 1.11.0 is a generally available release of theOpenShift Serverless Operator. This version of the OpenShift ServerlessOperator is supported on Red Hat OpenShift Container Platform version 4.6.Security Fix(es): golang.org/x/text: possibility to trigger an infinite loop in encoding/unicode could lead to crash (CVE-2020-14040) For more details about the security issue(s), including the impact, a CVSSscore, and other related information, see the CVE page(s) listed in theReferences section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:5149?
The severity of RHSA-2020:5149 is considered moderate due to the security vulnerabilities identified in the OpenShift Serverless Operator.
How do I fix RHSA-2020:5149?
To fix RHSA-2020:5149, update your Red Hat OpenShift Serverless Operator to version 1.11.1 or later.
What components are affected by RHSA-2020:5149?
RHSA-2020:5149 affects the Red Hat OpenShift Serverless Operator 1.11.0 on Red Hat OpenShift Container Platform version 4.6.
Is RHSA-2020:5149 a critical vulnerability?
No, RHSA-2020:5149 is classified as moderate rather than critical, but it is still important to address the identified issues.
What vulnerabilities are addressed in RHSA-2020:5149?
RHSA-2020:5149 addresses potential vulnerabilities in the golang.org/x/text library, among other components.