RHSA-2022:5719: Important: grafana security update
Grafana is an open source, feature rich metrics dashboard and graph editor forGraphite, InfluxDB & OpenTSDB.Security Fix(es): grafana: OAuth account takeover (CVE-2022-31107) For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVE page(s)listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:5719?
The severity of RHSA-2022:5719 is classified as important.
How do I fix RHSA-2022:5719?
To fix RHSA-2022:5719, update to grafana version 6.3.6-5.el8_2 or higher.
What are the implications of RHSA-2022:5719?
The implications of RHSA-2022:5719 include potential OAuth account takeover vulnerabilities.
What software is affected by RHSA-2022:5719?
RHSA-2022:5719 affects multiple packages including grafana, grafana-debuginfo, and grafana-azure-monitor among others.
Is RHSA-2022:5719 related to CVE-2022-31107?
Yes, RHSA-2022:5719 addresses the vulnerability identified by CVE-2022-31107.