RHSA-2023:4030: Critical: grafana security update
Critical: grafana security update
Other sources
Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB & OpenTSDB. Security Fix(es): grafana: account takeover possible when using Azure AD OAuth (CVE-2023-3128) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:4030?
The severity of RHSA-2023:4030 is critical.
How do I fix the vulnerability with ID RHSA-2023:4030?
To fix the vulnerability with ID RHSA-2023:4030, update your version of grafana to 9.0.9-3.el9_2.
Where can I find more information about RHSA-2023:4030?
You can find more information about RHSA-2023:4030 on the Red Hat website at https://access.redhat.com/errata/RHSA-2023:4030.
What software is affected by RHSA-2023:4030?
The software affected by RHSA-2023:4030 is grafana.
Which versions of grafana are affected by RHSA-2023:4030?
All versions up to 9.0.9-3.el9_2 of grafana are affected by RHSA-2023:4030.