First published: Fri Jul 01 2022(Updated: )
The Migration Toolkit for Containers (MTC) enables you to migrate Kubernetes resources, persistent volume data, and internal container images between OpenShift Container Platform clusters, using the MTC web console or the Kubernetes API.<br>Security Fix(es) from Bugzilla:<br><li> nodejs-ansi-regex: Regular expression denial of service (ReDoS) matching ANSI escape codes (CVE-2021-3807)</li> <li> node-fetch: exposure of sensitive information to an unauthorized actor (CVE-2022-0235)</li> <li> follow-redirects: Exposure of Sensitive Information via Authorization Header leak (CVE-2022-0536)</li> For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Migration Toolkit |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2022:5483 is classified as moderate.
To fix RHSA-2022:5483, you should update the Migration Toolkit for Containers to the latest version as per the advisory.
RHSA-2022:5483 addresses multiple vulnerabilities related to the Migration Toolkit for Containers affecting OpenShift Container Platform.
RHSA-2022:5483 specifically applies to certain versions of the OpenShift Container Platform, so check compatibility before applying.
You can find more information about RHSA-2022:5483 in the official Red Hat security advisory documentation.