First published: Thu Oct 19 2023(Updated: )
Red Hat OpenShift Service Mesh is Red Hat's distribution of the Istio service mesh project, tailored for installation into an on-premise OpenShift Container Platform installation.<br>Security Fix(es):<br><li> golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487) (CVE-2023-39325)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Red Hat OpenShift Service Mesh for Power | ||
Red Hat Red Hat OpenShift Service Mesh for IBM Z | ||
Red Hat Red Hat OpenShift Service Mesh |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2023:5951 is high.
The affected software for RHSA-2023:5951 includes Red Hat OpenShift Service Mesh for Power, Red Hat OpenShift Service Mesh for IBM Z, and Red Hat OpenShift Service Mesh.
You can find more information about RHSA-2023:5951 at the following references: [Red Hat Security Advisory](https://access.redhat.com/errata/RHSA-2023:5951) and [Red Hat Bugzilla](https://bugzilla.redhat.com/show_bug.cgi?id=2242010) and [Red Hat Bugzilla](https://bugzilla.redhat.com/show_bug.cgi?id=2243296).
To fix the vulnerability RHSA-2023:5951, apply the provided security update from Red Hat.