RHSA-2022:1781: Low: grafana security, bug fix, and enhancement update
Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB & OpenTSDB. The following packages have been upgraded to a later upstream version: grafana (7.5.11). (BZ#1993214)Security Fix(es): grafana: directory traversal vulnerability (CVE-2021-43813) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Additional Changes:For detailed information on changes in this release, see the Red Hat Enterprise Linux 8.6 Release Notes linked from the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:1781?
The severity of RHSA-2022:1781 is categorized as important.
How do I fix RHSA-2022:1781?
To fix RHSA-2022:1781, upgrade to Grafana version 7.5.11-2.el8 or later.
What vulnerability does RHSA-2022:1781 address?
RHSA-2022:1781 addresses a directory traversal vulnerability in Grafana.
Which versions of Grafana are affected by RHSA-2022:1781?
Versions prior to 7.5.11-2.el8 of Grafana are affected by RHSA-2022:1781.
Is RHSA-2022:1781 applicable to all architectures?
RHSA-2022:1781 applies to multiple architectures including x86_64, ppc64le, and others.