RHSA-2025:1227: Important: Logging for Red Hat OpenShift - 5.9.11
Important: Logging for Red Hat OpenShift - 5.9.11
Other sources
Logging for Red Hat OpenShift - 5.9.11logging-fluentd-container: HTTP request smuggling (CVE-2024-47220)cluster-logging-operator-container: Info Leak via Uninitialized Stack Contents (CVE-2024-12085)
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:1227?
The severity of RHSA-2025:1227 is classified as Important.
Which vulnerabilities are addressed in RHSA-2025:1227?
RHSA-2025:1227 addresses CVE-2024-47220 (HTTP request smuggling) and CVE-2024-12085 (Info Leak via Uninitialized Stack Contents).
How do I fix RHSA-2025:1227?
To fix RHSA-2025:1227, you should update your Logging Subsystem for Red Hat OpenShift to the latest version provided in the advisory.
Which products are affected by RHSA-2025:1227?
RHSA-2025:1227 affects various versions of the Red Hat OpenShift Logging Subsystem for IBM Z, LinuxONE, ARM 64, and IBM Power.
What are the implications of not addressing RHSA-2025:1227?
Failing to address RHSA-2025:1227 may expose your systems to HTTP request smuggling and potential information leakage vulnerabilities.