First published: Thu Mar 24 2022(Updated: )
Red Hat OpenShift Serverless Client kn 1.21.0 provides a CLI to interact with Red Hat OpenShift Serverless 1.21.0. The kn CLI is delivered as an RPM package for installation on RHEL platforms, and as binaries for non-Linux platforms.<br>Security Fix(es):<br><li> golang: syscall: don't close fd 0 on ForkExec error (CVE-2021-44717)</li> <li> golang: net/<a href="http:" target="_blank">http:</a> limit growth of header canonicalization cache (CVE-2021-44716)</li> For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE page(s)<br>listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/openshift-serverless-clients | <1.0.0-2.el8 | 1.0.0-2.el8 |
redhat/openshift-serverless-clients | <1.0.0-2.el8 | 1.0.0-2.el8 |
redhat/openshift-serverless-clients | <1.0.0-2.el8 | 1.0.0-2.el8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability RHSA-2022:1056 is classified as a moderate severity issue.
To fix RHSA-2022:1056, update the openshift-serverless-clients package to version 1.0.0-2.el8.
RHSA-2022:1056 affects RHEL platforms where the openshift-serverless-clients package is installed.
The impact of RHSA-2022:1056 could allow for unauthorized access or manipulation when using the kn CLI.
There is no validated workaround for RHSA-2022:1056; updating the package is mandatory.