First published: Thu Jul 07 2022(Updated: )
Red Hat Advanced Cluster Management for Kubernetes 2.5.1 images<br>Red Hat Advanced Cluster Management for Kubernetes provides the<br>capabilities to address common challenges that administrators and site<br>reliability engineers face as they work across a range of public and<br>private cloud environments. Clusters and applications are all visible and<br>managed from a single console—with security policy built in.<br>This advisory contains the container images for Red Hat Advanced Cluster<br>Management for Kubernetes, which fix several bugs. See the following<br>Release Notes documentation, which will be updated shortly for this<br>release, for additional details about this release:<br><a href="https://access.redhat.com/documentation/en-us/red_hat_advanced_cluster_management_for_kubernetes/2.5/html/release_notes/" target="_blank">https://access.redhat.com/documentation/en-us/red_hat_advanced_cluster_management_for_kubernetes/2.5/html/release_notes/</a> Security update:<br><li> nats-server: misusing the "dynamically provisioned sandbox accounts" feature authenticated user can obtain the privileges of the System account (CVE-2022-24450)</li> Bug fixes:<br><li> Can't install submariner add-ons from UI on unsupported cloud provider (BZ# 2087686)</li> <li> policy controller addons are Progressing status (unhealthy from backend) on OCP3.11 in ARM hub (BZ# 2088270)</li> <li> RHACM 2.5.1 images (BZ# 2090802)</li> <li> Broken link to Submariner manual install instructions (BZ# 2095333)</li> <li> `The backend service is unavailable` when accessing ACM 2.5 Overview page (BZ# 2096389)</li> <li> 64 character length causing clusters to unsubscribe (BZ# 2101453)</li>
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Advanced Cluster Management |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2022:5531 is classified as important.
To fix RHSA-2022:5531, update your Red Hat Advanced Cluster Management for Kubernetes to the latest version available.
RHSA-2022:5531 affects the Red Hat Advanced Cluster Management for Kubernetes version 2.5.1.
As of now, there are no publicly disclosed exploits specifically targeting RHSA-2022:5531.
If unable to update, consider applying mitigations outlined in the advisory or reviewing your security configurations to minimize risks.