RHSA-2025:1870: Important: Red Hat OpenStack Platform 17.1 (osp-director-operator) security update
Security Fix(es):<br><li> argument injection via the URL field (CVE-2025-21613)</li> <li> go-git clients vulnerable to DoS via maliciously crafted Git server</li> replies (CVE-2025-21614)<br>For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE<br>page listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:1870?
The severity of RHSA-2025:1870 is significant due to the argument injection vulnerability and potential denial of service from malicious Git server replies.
How do I fix RHSA-2025:1870?
To fix RHSA-2025:1870, ensure to apply the latest security updates provided by Red Hat for the OpenStack Platform.
What vulnerabilities are addressed in RHSA-2025:1870?
RHSA-2025:1870 addresses argument injection via the URL field and DoS vulnerabilities in go-git clients.
Which software is affected by RHSA-2025:1870?
RHSA-2025:1870 affects the Red Hat OpenStack Platform, specifically version 13.
What types of attacks does RHSA-2025:1870 protect against?
RHSA-2025:1870 provides protection against argument injection attacks and denial of service attacks via malicious Git server replies.