First published: Tue May 31 2022(Updated: )
The Migration Toolkit for Containers (MTC) enables you to migrate Kubernetes resources, persistent volume data, and internal container images between OpenShift Container Platform clusters, using the MTC web console or the Kubernetes API.<br>Security Fix(es):<br><li> nodejs-ansi-regex: Regular expression denial of service (ReDoS) matching ANSI escape codes (CVE-2021-3807)</li> <li> golang: archive/zip: malformed archive may cause panic or memory exhaustion (incomplete fix of CVE-2021-33196) (CVE-2021-39293)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Migration Toolkit |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2022:4814 has been classified as moderate.
You can fix RHSA-2022:4814 by updating the affected packages to the latest version provided by the security advisory.
RHSA-2022:4814 affects the Migration Toolkit for Containers used in OpenShift Container Platform clusters.
RHSA-2022:4814 addresses vulnerabilities related to nodejs-ansi-regex among potential other issues.
There are currently no recommended workarounds for RHSA-2022:4814; it is advised to apply the available updates.