First published: Tue Jan 18 2022(Updated: )
The RHEL-8 based Cryostat container images have been updated with a security fix for "CVE-2021-44716 golang: net/<a href="http:" target="_blank">http:</a> limit growth of header canonicalization cache".<br>Users of RHEL-8 based Cryostat container images are advised to upgrade to these updated images, which contain backported patches to correct this security issue. Users of these images are also encouraged to rebuild all container images that depend on these images.<br>You can find images updated by this advisory in Red Hat Ecosystem Catalog (see References).
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Cryostat |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2022:0163 is classified as important.
To fix RHSA-2022:0163, users are advised to update the RHEL-8 based Cryostat container images.
RHSA-2022:0163 addresses CVE-2021-44716, which involves limiting the growth of the header canonicalization cache in the net/http package of Go.
Users of RHEL-8 based Cryostat container images are affected by RHSA-2022:0163.
RHSA-2022:0163 relates to the Red Hat Cryostat product.