RHSA-2022:4667: Moderate: OpenShift Virtualization 4.10.1 RPMs security and bug fix update
OpenShift Virtualization is Red Hat's virtualization solution designed for Red Hat OpenShift Container Platform. This advisory contains OpenShift Virtualization 4.10.1 RPMs.Security Fix(es): prometheus/clientgolang: Denial of service using InstrumentHandlerCounter (CVE-2022-21698) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): 4.10.1 rpms (BZ#2065755)
Affected Software
Remediation
Event History
Frequently Asked Questions
What vulnerabilities are addressed in RHSA-2022:4667?
RHSA-2022:4667 addresses a denial of service vulnerability in prometheus/client_golang using InstrumentHandlerCounter.
What is the severity level of RHSA-2022:4667?
The severity level of RHSA-2022:4667 is classified as moderate.
How do I fix RHSA-2022:4667?
To fix RHSA-2022:4667, update the affected packages to the latest version provided in the advisory, specifically to the 4.10.1-489.el7 or 4.10.1-489.el8 RPMs.
Which packages are affected by RHSA-2022:4667?
The affected packages in RHSA-2022:4667 include kubevirt, kubevirt-virtctl, and kubevirt-virtctl-redistributable for both el7 and el8.
Is there a specific version that resolves RHSA-2022:4667?
Yes, the specific versions to resolve RHSA-2022:4667 are 4.10.1-489.el7 or 4.10.1-489.el8.