First published: Mon Feb 15 2021(Updated: )
Red Hat OpenShift Serverless 1.13.0 is a generally available release of the<br>OpenShift Serverless Operator.<br>This version of the OpenShift Serverless Operator is supported on Red Hat OpenShift Container Platform version 4.6, and includes security and bug fixes and enhancements. For more information, see the documentation listed in the References section.<br>Security Fix(es):<br><li> jwt-go: access restriction bypass vulnerability (CVE-2020-26160)</li> For more details about the security issues and their impact, the CVSS<br>score, acknowledgements, and other related information, see the CVE pages<br>listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat OpenShift Serverless | ||
Red Hat OpenShift Container Platform for IBM LinuxONE | >=4.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The exact severity of RHSA-2021:0516 is typically classified as important by Red Hat, reflecting potential impact on system confidentiality, integrity, or availability.
To fix RHSA-2021:0516, you should update to the latest version of Red Hat OpenShift Serverless available for your environment.
RHSA-2021:0516 affects Red Hat OpenShift Serverless 1.13.0 and possibly earlier versions running on Red Hat OpenShift Container Platform 4.6.
RHSA-2021:0516 includes security and bug fixes as well as enhancements to improve the performance and stability of OpenShift Serverless.
While not always mandatory, applying RHSA-2021:0516 is highly recommended to ensure the security and functionality of your OpenShift Serverless installation.