RHSA-2026:22394: Red Hat OpenShift Data Foundation 4.16.29 security, enhancement & bug fix update
Red Hat OpenShift Data Foundation 4.16.29 security, enhancement & bug fix updateFIXED BUGS:==========DFBUGS-7034: RHODF 4.16.29 releaseNGINX: Arbitrary Code Execution Vulnerability (CVE-2026-42945)
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Red Hat OpenShift Data Foundation 4.16to a version that resolves this vulnerability.Fixed in 4.16.29 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch DFBUGS-7034 - Compensating control
Address the NGINX Arbitrary Code Execution vulnerability (CVE-2026-42945) by applying the Red Hat OpenShift Data Foundation 4.16.29 security, enhancement & bug fix update.
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:22394?
The severity of RHSA-2026:22394 is rated at 75.
How do I fix RHSA-2026:22394?
To fix RHSA-2026:22394, upgrade to Red Hat OpenShift Data Foundation version 4.16.29.
What vulnerabilities are addressed in RHSA-2026:22394?
RHSA-2026:22394 addresses the NGINX arbitrary code execution vulnerability identified as CVE-2026-42945.
What software is affected by RHSA-2026:22394?
RHSA-2026:22394 affects Red Hat OpenShift Data Foundation.
When was RHSA-2026:22394 published?
RHSA-2026:22394 was published on June 2, 2026.