RHSA-2023:0977: Important: Red Hat OpenShift Data Science 1.22.1 security update
Red Hat OpenShift Data Science 1.22.1 (kubeflow, dashboard, deployer) security update<br>Security Fix(es):<br><li> odh-notebook-controller-container: Missing authorization allows for file contents disclosure (CVE-2023-0923)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:0977?
The severity of RHSA-2023:0977 is classified as medium due to the missing authorization allowing for file contents disclosure.
How do I fix RHSA-2023:0977?
To fix RHSA-2023:0977, you need to apply the latest security update for Red Hat OpenShift Data Science.
What software is affected by RHSA-2023:0977?
RHSA-2023:0977 affects Red Hat OpenShift Data Science version 1.22.1.
What is CVE-2023-0923 in relation to RHSA-2023:0977?
CVE-2023-0923 is the specific security vulnerability addressed by RHSA-2023:0977 that allows for unauthorized file contents disclosure.
Is there a workaround for RHSA-2023:0977?
There is no documented workaround for RHSA-2023:0977; applying the security update is the recommended solution.