First published: Mon Aug 07 2023(Updated: )
Red Hat OpenShift support for Windows Containers allows you to deploy Windows container workloads running on Windows Server containers.<br>Security Fix(es):<br><li> golang: crash in a golang.org/x/crypto/ssh server (CVE-2022-27191)</li> <li> containerd: supplementary groups are not set up properly (CVE-2023-25173)</li> <li> golang: crypto/tls: session tickets lack random ticket_age_add (CVE-2022-30629)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Red Hat OpenShift Container Platform |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2023:4488 is medium.
The affected software for RHSA-2023:4488 is Red Hat OpenShift Container Platform.
You can find more information about RHSA-2023:4488 on the Red Hat website at https://access.redhat.com/errata/RHSA-2023:4488.
Yes, there are known bugs related to RHSA-2023:4488. You can find more information about them on the Red Hat Bugzilla at https://bugzilla.redhat.com/show_bug.cgi?id=2064702 and https://bugzilla.redhat.com/show_bug.cgi?id=2092793.
To fix RHSA-2023:4488, you should apply the recommended security update provided by Red Hat.