First published: Wed Sep 20 2023(Updated: )
Logging Subsystem 5.5.16 - Red Hat OpenShift<br>Security Fix(es):<br><li> openshift-logging: LokiStack authorisation is cached too broadly (CVE-2023-4456)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Logging Subsystem for Red Hat OpenShift for ARM 64 | ||
Red Hat Logging Subsystem for Red Hat OpenShift for IBM Power, little endian | ||
Red Hat Logging Subsystem for Red Hat OpenShift | ||
Red Hat Logging Subsystem for Red Hat OpenShift for IBM Z and LinuxONE |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2023:5096 is medium.
To fix RHSA-2023:5096, update your Red Hat OpenShift Logging Subsystem to version 5.5.16 or later.
The affected software for RHSA-2023:5096 includes Red Hat Logging Subsystem for Red Hat OpenShift for ARM 64, Red Hat Logging Subsystem for Red Hat OpenShift for IBM Power, little endian, Red Hat Logging Subsystem for Red Hat OpenShift, and Red Hat Logging Subsystem for Red Hat OpenShift for IBM Z and LinuxONE.
You can find more information about RHSA-2023:5096 on the Red Hat Customer Portal and Bugzilla.