RHSA-2021:2136: Moderate: Openshift Logging security and bugs update (5.0.4)
Openshift Logging Bug Fix Release (5.0.4)<br>Security Fix(es):<br><li> gogo/protobuf: plugin/unmarshal/unmarshal.go lacks certain index validation (CVE-2021-3121)</li> For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE<br>page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:2136?
The severity of RHSA-2021:2136 is determined by the CVSS score associated with CVE-2021-3121.
How do I fix RHSA-2021:2136?
To fix RHSA-2021:2136, update your Red Hat OpenShift Logging to the latest patched version.
What are the security issues addressed in RHSA-2021:2136?
RHSA-2021:2136 addresses a vulnerability in gogo/protobuf's plugin/unmarshal/unmarshal.go due to inadequate index validation.
Which versions of Red Hat OpenShift Logging are affected by RHSA-2021:2136?
RHSA-2021:2136 affects certain versions of Red Hat OpenShift Logging that are using gogo/protobuf.
Is there a known workaround for RHSA-2021:2136?
There are no specific workarounds listed for RHSA-2021:2136; the recommended action is to apply the security update.