See how volsync compares to other vendors in security performance
VolSync v0.5<br>VolSync is a Kubernetes operator that enables asynchronous replication of<br>persistent volumes within a cluster, or across clusters. After deploying<br>the VolSync operator, it can create and maintain copies of your persistent<br>data.<br>For more information about VolSync, see:<br><a href="https://access.redhat.com/documentation/en-us/redhatadvancedclustermanagementforkubernetes/2.6/html/add-ons/add-ons-overview#volsync" target="blank">https://access.redhat.com/documentation/en-us/redhatadvancedclustermanagementforkubernetes/2.6/html/add-ons/add-ons-overview#volsync</a> or the VolSync open source community website at:<br><a href="https://volsync.readthedocs.io/en/stable/." target="blank">https://volsync.readthedocs.io/en/stable/.</a> This advisory contains a security fix and updates to the VolSync<br>container images.<br>Security fixes:<br><li> CVE-2022-27191 golang: crash in a golang.org/x/crypto/ssh server</li> <li> CVE-2022-30629 golang: crypto/tls: session tickets lack random ticketageadd</li> <li> CVE-2022-1705 golang: net/<a href="http:" target="blank">http:</a> improper sanitization of Transfer-Encoding header</li> <li> CVE-2022-1962 golang: go/parser: stack exhaustion in all Parse functions</li> <li> CVE-2022-28131 golang: encoding/xml: stack exhaustion in Decoder.Skip</li> <li> CVE-2022-30630 golang: io/fs: stack exhaustion in Glob</li> <li> CVE-2022-30631 golang: compress/gzip: stack exhaustion in Reader.Read</li> <li> CVE-2022-30632 golang: path/filepath: stack exhaustion in Glob</li> <li> CVE-2022-30633 golang: encoding/xml: stack exhaustion in Unmarshal</li> <li> CVE-2022-30635 golang: encoding/gob: stack exhaustion in Decoder.Decode</li> <li> CVE-2022-32148 golang: net/http/httputil: NewSingleHostReverseProxy - omit X-Forwarded-For not working</li>