First published: Tue Jan 17 2023(Updated: )
Red Hat OpenShift Container Platform is Red Hat's cloud computing<br>Kubernetes application platform solution designed for on-premise or private<br>cloud deployments.<br>Security Fix(es):<br><li> golang: out-of-bounds read in golang.org/x/text/language leads to DoS</li> (CVE-2021-38561)<br><li> golang: crash in a golang.org/x/crypto/ssh server (CVE-2022-27191)</li> For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE<br>page(s)<br>listed in the References section.
Affected Software | Affected Version | How to fix |
---|
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
RHSA-2022:7401 is classified as a moderate severity vulnerability.
To fix RHSA-2022:7401, you should upgrade to the latest version of the affected packages as provided in the security advisory.
CVE-2021-3852 can lead to an out-of-bounds read that may result in a denial of service condition.
RHSA-2022:7401 affects the Red Hat OpenShift Container Platform and is related to its use of golang libraries.
There are no specific workarounds recommended for RHSA-2022:7401, so patching is the preferred method.