RHSA-2023:1894: Critical: Multicluster Engine for Kubernetes 2.1 hotfix security update for console
Published Apr 20, 2023
·Updated
Security Fix(es) CVE-2023-29017 vm2: Sandbox Escape CVE-2023-29199 vm2: Sandbox Escape CVE-2023-30547 vm2: Sandbox Escape when exception sanitization
Affected Software
1 affected component
Red Hat multicluster engine for Kubernetes=2.1
Remediation
Event History
Apr 20, 2023
Advisory Published
12:00 AM
Data Sourced
12:00 AM
RemedyDescriptionAffected Software
Frequently Asked Questions
1
What is the severity of RHSA-2023:1894?
The severity of RHSA-2023:1894 is critical due to multiple sandbox escape vulnerabilities.
2
How do I fix RHSA-2023:1894?
To fix RHSA-2023:1894, update the affected software to the patched version provided by the vendor.
3
What vulnerabilities are addressed in RHSA-2023:1894?
RHSA-2023:1894 addresses sandbox escape vulnerabilities CVE-2023-29017, CVE-2023-29199, and CVE-2023-30547.
4
What is the impact of the vulnerabilities in RHSA-2023:1894?
The impact of the vulnerabilities in RHSA-2023:1894 can lead to unauthorized access and the ability to escape the sandbox environment.
5
Is RHSA-2023:1894 specific to vm2?
Yes, RHSA-2023:1894 specifically addresses vulnerabilities in the vm2 library.