First published: Tue Feb 07 2023(Updated: )
Red Hat Advanced Cluster Management for Kubernetes 2.7.0 images<br>Red Hat Advanced Cluster Management for Kubernetes provides the<br>capabilities to address common challenges that administrators and site<br>reliability engineers face as they work across a range of public and<br>private cloud environments. Clusters and applications are all visible and<br>managed from a single console—with security policy built in.<br>This advisory contains the container images for Red Hat Advanced Cluster<br>Management for Kubernetes, which fix several bugs. See the following<br>Release Notes documentation, which will be updated shortly for this<br>release, for additional details about this release:<br><a href="https://access.redhat.com/documentation/en-us/red_hat_advanced_cluster_management_for_kubernetes/2.7/html/release_notes/" target="_blank">https://access.redhat.com/documentation/en-us/red_hat_advanced_cluster_management_for_kubernetes/2.7/html/release_notes/</a> Security updates:<br><li> CVE-2022-41912 crewjam/saml: Authentication bypass when processing SAML responses containing multiple Assertion elements</li> <li> CVE-2023-22467 luxon: Inefficient regular expression complexity in luxon.js</li> <li> CVE-2022-3517 nodejs-minimatch: ReDoS via the braceExpand function</li> <li> CVE-2022-30629 golang: crypto/tls: session tickets lack random ticket_age_add</li> Bug addressed:<br><li> ACM 2.7 images (BZ# 2116459)</li>
Affected Software | Affected Version | How to fix |
---|
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.