Vulnerability Database
Blog
FAQ
Docs
RHBA-2020:0527
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHBA-2020:0527
Import Source
https://security.access.redhat.com/data/osv/RHBA-2020:0527.json
JSON Data
https://api.osv.dev/v1/vulns/RHBA-2020:0527
Related
CVE-2019-10392
CVE-2020-8608
Published
2024-09-16T03:31:35Z
Modified
2024-09-16T03:31:35Z
Severity
8.8 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
Red Hat Bug Fix Advisory: OpenShift Container Platform 4.3.3 packages update
Details
References
https://access.redhat.com/errata/RHBA-2020:0527
https://bugzilla.redhat.com/show_bug.cgi?id=1802141
https://access.redhat.com/security/data/csaf/v2/advisories/2020/rhba-2020_0527.json
https://access.redhat.com/security/cve/CVE-2019-10392
https://bugzilla.redhat.com/show_bug.cgi?id=1819704
https://www.cve.org/CVERecord?id=CVE-2019-10392
https://nvd.nist.gov/vuln/detail/CVE-2019-10392
https://jenkins.io/security/advisory/2019-09-12/#SECURITY-1534
https://access.redhat.com/security/cve/CVE-2020-8608
https://bugzilla.redhat.com/show_bug.cgi?id=1798453
https://www.cve.org/CVERecord?id=CVE-2020-8608
https://nvd.nist.gov/vuln/detail/CVE-2020-8608
Affected packages
Red Hat:openshift:4.3::el7
/
atomic-enterprise-service-catalog
Package
Name
atomic-enterprise-service-catalog
Purl
pkg:rpm/redhat/atomic-enterprise-service-catalog
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:4.3.3-202002170501.git.1.f30799e.el7
Red Hat:openshift:4.3::el7
/
atomic-enterprise-service-catalog-svcat
Package
Name
atomic-enterprise-service-catalog-svcat
Purl
pkg:rpm/redhat/atomic-enterprise-service-catalog-svcat
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:4.3.3-202002170501.git.1.f30799e.el7
Red Hat:openshift:4.3::el7
/
atomic-openshift-service-idler
Package
Name
atomic-openshift-service-idler
Purl
pkg:rpm/redhat/atomic-openshift-service-idler
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002170501.git.1.4feff9c.el7
Red Hat:openshift:4.3::el7
/
cri-o
Package
Name
cri-o
Purl
pkg:rpm/redhat/cri-o
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.16.3-20.dev.rhaos4.3.git11c04e3.el7
Red Hat:openshift:4.3::el7
/
cri-o-debuginfo
Package
Name
cri-o-debuginfo
Purl
pkg:rpm/redhat/cri-o-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.16.3-20.dev.rhaos4.3.git11c04e3.el7
Red Hat:openshift:4.3::el7
/
jenkins
Package
Name
jenkins
Purl
pkg:rpm/redhat/jenkins
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.204.1.1581950993-1.el7
Red Hat:openshift:4.3::el7
/
jenkins-2-plugins
Package
Name
jenkins-2-plugins
Purl
pkg:rpm/redhat/jenkins-2-plugins
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.1581956184-1.el7
Red Hat:openshift:4.3::el7
/
openshift
Package
Name
openshift
Purl
pkg:rpm/redhat/openshift
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002140552.git.0.e38059c.el7
Red Hat:openshift:4.3::el7
/
openshift-ansible
Package
Name
openshift-ansible
Purl
pkg:rpm/redhat/openshift-ansible
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002142331.git.173.bb0b5a1.el7
Red Hat:openshift:4.3::el7
/
openshift-ansible-test
Package
Name
openshift-ansible-test
Purl
pkg:rpm/redhat/openshift-ansible-test
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002142331.git.173.bb0b5a1.el7
Red Hat:openshift:4.3::el7
/
openshift-clients
Package
Name
openshift-clients
Purl
pkg:rpm/redhat/openshift-clients
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002140552.git.1.ff73b47.el7
Red Hat:openshift:4.3::el7
/
openshift-clients-redistributable
Package
Name
openshift-clients-redistributable
Purl
pkg:rpm/redhat/openshift-clients-redistributable
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002140552.git.1.ff73b47.el7
Red Hat:openshift:4.3::el7
/
openshift-hyperkube
Package
Name
openshift-hyperkube
Purl
pkg:rpm/redhat/openshift-hyperkube
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002140552.git.0.e38059c.el7
Red Hat:openshift:4.3::el8
/
cri-o
Package
Name
cri-o
Purl
pkg:rpm/redhat/cri-o
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.16.3-22.dev.rhaos4.3.git11c04e3.el8
Red Hat:openshift:4.3::el8
/
cri-o-debuginfo
Package
Name
cri-o-debuginfo
Purl
pkg:rpm/redhat/cri-o-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.16.3-22.dev.rhaos4.3.git11c04e3.el8
Red Hat:openshift:4.3::el8
/
cri-o-debugsource
Package
Name
cri-o-debugsource
Purl
pkg:rpm/redhat/cri-o-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.16.3-22.dev.rhaos4.3.git11c04e3.el8
Red Hat:openshift:4.3::el8
/
cri-tools
Package
Name
cri-tools
Purl
pkg:rpm/redhat/cri-tools
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.17.0-1.el8
Red Hat:openshift:4.3::el8
/
dracut
Package
Name
dracut
Purl
pkg:rpm/redhat/dracut
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:049-64.git20200123.el8
Red Hat:openshift:4.3::el8
/
dracut-caps
Package
Name
dracut-caps
Purl
pkg:rpm/redhat/dracut-caps
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:049-64.git20200123.el8
Red Hat:openshift:4.3::el8
/
dracut-config-generic
Package
Name
dracut-config-generic
Purl
pkg:rpm/redhat/dracut-config-generic
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:049-64.git20200123.el8
Red Hat:openshift:4.3::el8
/
dracut-config-rescue
Package
Name
dracut-config-rescue
Purl
pkg:rpm/redhat/dracut-config-rescue
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:049-64.git20200123.el8
Red Hat:openshift:4.3::el8
/
dracut-debuginfo
Package
Name
dracut-debuginfo
Purl
pkg:rpm/redhat/dracut-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:049-64.git20200123.el8
Red Hat:openshift:4.3::el8
/
dracut-debugsource
Package
Name
dracut-debugsource
Purl
pkg:rpm/redhat/dracut-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:049-64.git20200123.el8
Red Hat:openshift:4.3::el8
/
dracut-live
Package
Name
dracut-live
Purl
pkg:rpm/redhat/dracut-live
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:049-64.git20200123.el8
Red Hat:openshift:4.3::el8
/
dracut-network
Package
Name
dracut-network
Purl
pkg:rpm/redhat/dracut-network
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:049-64.git20200123.el8
Red Hat:openshift:4.3::el8
/
dracut-squash
Package
Name
dracut-squash
Purl
pkg:rpm/redhat/dracut-squash
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:049-64.git20200123.el8
Red Hat:openshift:4.3::el8
/
dracut-tools
Package
Name
dracut-tools
Purl
pkg:rpm/redhat/dracut-tools
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:049-64.git20200123.el8
Red Hat:openshift:4.3::el8
/
machine-config-daemon
Package
Name
machine-config-daemon
Purl
pkg:rpm/redhat/machine-config-daemon
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002170501.git.1.6b1b155.el8
Red Hat:openshift:4.3::el8
/
openshift
Package
Name
openshift
Purl
pkg:rpm/redhat/openshift
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002140552.git.0.e38059c.el8
Red Hat:openshift:4.3::el8
/
openshift-clients
Package
Name
openshift-clients
Purl
pkg:rpm/redhat/openshift-clients
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002140552.git.1.ff73b47.el8
Red Hat:openshift:4.3::el8
/
openshift-clients-redistributable
Package
Name
openshift-clients-redistributable
Purl
pkg:rpm/redhat/openshift-clients-redistributable
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002140552.git.1.ff73b47.el8
Red Hat:openshift:4.3::el8
/
openshift-hyperkube
Package
Name
openshift-hyperkube
Purl
pkg:rpm/redhat/openshift-hyperkube
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002140552.git.0.e38059c.el8
Red Hat:openshift:4.3::el8
/
openshift-kuryr
Package
Name
openshift-kuryr
Purl
pkg:rpm/redhat/openshift-kuryr
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002170501.git.1.3b8b4cc.el8
Red Hat:openshift:4.3::el8
/
openshift-kuryr-cni
Package
Name
openshift-kuryr-cni
Purl
pkg:rpm/redhat/openshift-kuryr-cni
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002170501.git.1.3b8b4cc.el8
Red Hat:openshift:4.3::el8
/
openshift-kuryr-common
Package
Name
openshift-kuryr-common
Purl
pkg:rpm/redhat/openshift-kuryr-common
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002170501.git.1.3b8b4cc.el8
Red Hat:openshift:4.3::el8
/
openshift-kuryr-controller
Package
Name
openshift-kuryr-controller
Purl
pkg:rpm/redhat/openshift-kuryr-controller
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002170501.git.1.3b8b4cc.el8
Red Hat:openshift:4.3::el8
/
python3-kuryr-kubernetes
Package
Name
python3-kuryr-kubernetes
Purl
pkg:rpm/redhat/python3-kuryr-kubernetes
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.3.3-202002170501.git.1.3b8b4cc.el8
Red Hat:openshift:4.3::el8
/
slirp4netns
Package
Name
slirp4netns
Purl
pkg:rpm/redhat/slirp4netns
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.4.2-4.git21fdece.el8
Red Hat:openshift:4.3::el8
/
slirp4netns-debuginfo
Package
Name
slirp4netns-debuginfo
Purl
pkg:rpm/redhat/slirp4netns-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.4.2-4.git21fdece.el8
Red Hat:openshift:4.3::el8
/
slirp4netns-debugsource
Package
Name
slirp4netns-debugsource
Purl
pkg:rpm/redhat/slirp4netns-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.4.2-4.git21fdece.el8
Red Hat:openshift:4.3::el8
/
toolbox
Package
Name
toolbox
Purl
pkg:rpm/redhat/toolbox
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.0.6-1.rhaos4.3.el8
RHBA-2020:0527 - OSV