RHSA-2025:3922: Moderate: Red Hat OpenShift Service Mesh Containers for 2.5.10
Moderate: Red Hat OpenShift Service Mesh Containers for 2.5.10
Other sources
Red Hat OpenShift Service Mesh is Red Hat's distribution of the Istio service<br>mesh project, tailored for installation into an OpenShift Container Platform<br>installation.<br>Security Fix(es):<br><li> openshift-istio-kiali-rhel8-container: net/<a href="http:" target="blank">http:</a> sensitive headers incorrectly sent after cross-domain redirect (CVE-2024-45336)</li> <li> openshift-istio-kiali-rhel8-container: Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec (CVE-2025-22866)</li> For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE page(s)<br>listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:3922?
The severity of RHSA-2025:3922 is categorized as moderate.
How do I fix RHSA-2025:3922?
To fix RHSA-2025:3922, ensure that you update your Red Hat OpenShift Service Mesh to the latest version as recommended in the advisory.
What products are affected by RHSA-2025:3922?
RHSA-2025:3922 affects various distributions of Red Hat OpenShift Service Mesh including those for IBM Z, Power, and ARM 64.
What is Red Hat OpenShift Service Mesh?
Red Hat OpenShift Service Mesh is a distribution of the Istio service mesh project, designed specifically for the OpenShift Container Platform.
Are there any known issues with RHSA-2025:3922?
Yes, there are documented issues associated with RHSA-2025:3922 that are tracked in Red Hat's bugzilla.