RHSA-2023:7669: Moderate: Red Hat build of Cryostat 2.4.0: new RHEL 8 container images
Moderate: Red Hat build of Cryostat 2.4.0: new RHEL 8 container images
Other sources
New Red Hat build of Cryostat 2.4.0 on RHEL 8 container images have been released, adding a variety of features and bug fixes.Users of the Red Hat build of Cryostat 2.3.1 on RHEL 8 container images are advised to upgrade to these updated images, which contain backported patches to fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.Security Fix(es): vertx-web: StaticHandler disclosure of classpath resources on Windows when mounted on a wildcard route (CVE-2023-24815) bouncycastle: potential blind LDAP injection attack using a self-signed certificate (CVE-2023-33201) netty: SniHandler 16MB allocation leads to OOM (CVE-2023-34462) You can find images updated by this advisory in Red Hat Container Catalog (see References).
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:7669?
The severity of RHSA-2023:7669 is medium.
What software is affected by RHSA-2023:7669?
Red Hat Cryostat is affected by RHSA-2023:7669.
Where can I find more information about RHSA-2023:7669?
You can find more information about RHSA-2023:7669 [here](https://access.redhat.com/errata/RHSA-2023:7669).
Is there a bug report for RHSA-2023:7669?
Yes, you can find the bug report [here](https://bugzilla.redhat.com/show_bug.cgi?id=2209400) and [here](https://bugzilla.redhat.com/show_bug.cgi?id=2215465).
How can I fix RHSA-2023:7669?
To fix RHSA-2023:7669, you should update to Red Hat build of Cryostat 2.4.0: new RHEL 8 container images.