First published: Mon Mar 28 2022(Updated: )
Gatekeeper Operator v0.2<br>Gatekeeper is an open source project that applies the OPA Constraint<br>Framework to enforce policies on your Kubernetes clusters. <br>This advisory contains the container images for Gatekeeper that include security updates, and container upgrades.<br>Red Hat Product Security has rated this update as having a security impact<br>of Moderate. A Common Vulnerability Scoring System (CVSS) base score,<br>which gives a detailed severity rating, is available for each vulnerability<br>from the CVE link(s) in the References section. <br>Note: Gatekeeper support from the Red Hat support team is limited cases<br>where it is integrated and used with Red Hat Advanced Cluster Management<br>for Kubernetes. For support options for any other use, see the Gatekeeper<br>open source project website at:<br><a href="https://open-policy-agent.github.io/gatekeeper/website/docs/howto/." target="_blank">https://open-policy-agent.github.io/gatekeeper/website/docs/howto/.</a> Security updates:<br><li> golang.org/x/crypto: empty plaintext packet causes panic (CVE-2021-43565)</li> <li> golang: crypto/elliptic IsOnCurve returns true for invalid field elements (CVE-2022-23806)</li>
Affected Software | Affected Version | How to fix |
---|
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.