First published: Mon Jan 03 2022(Updated: )
Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB & OpenTSDB. <br>Security Fix(es):<br><li> golang: net/<a href="http:" target="_blank">http:</a> limit growth of header canonicalization cache (CVE-2021-44716)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/grafana | <7.5.9-5.el8_5 | 7.5.9-5.el8_5 |
redhat/grafana | <7.5.9-5.el8_5 | 7.5.9-5.el8_5 |
redhat/grafana-debuginfo | <7.5.9-5.el8_5 | 7.5.9-5.el8_5 |
redhat/grafana-debuginfo | <7.5.9-5.el8_5 | 7.5.9-5.el8_5 |
redhat/grafana | <7.5.9-5.el8_5 | 7.5.9-5.el8_5 |
redhat/grafana-debuginfo | <7.5.9-5.el8_5 | 7.5.9-5.el8_5 |
redhat/grafana | <7.5.9-5.el8_5.aa | 7.5.9-5.el8_5.aa |
redhat/grafana-debuginfo | <7.5.9-5.el8_5.aa | 7.5.9-5.el8_5.aa |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2022:0001 is classified as Important.
To fix RHSA-2022:0001, upgrade to grafana version 7.5.9-5.el8_5.
RHSA-2022:0001 addresses a vulnerability related to the growth of header canonicalization cache in golang.
Grafana versions prior to 7.5.9-5.el8_5 are affected by RHSA-2022:0001.
Yes, the fix for RHSA-2022:0001 is available for multiple architectures including x86_64 and ppc64le.