Vulnerability Database
Blog
FAQ
Docs
RHSA-2022:0557
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2022:0557
Import Source
https://security.access.redhat.com/data/osv/RHSA-2022:0557.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2022:0557
Related
CVE-2021-29923
CVE-2021-36221
CVE-2021-44716
CVE-2021-44717
Published
2024-09-30T14:19:15Z
Modified
2024-10-29T20:10:35Z
Severity
7.5 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: OpenShift Container Platform 4.9.22 security update
Details
References
https://access.redhat.com/errata/RHSA-2022:0557
https://access.redhat.com/security/updates/classification/#moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1992006
https://bugzilla.redhat.com/show_bug.cgi?id=1995656
https://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_0557.json
https://access.redhat.com/security/cve/CVE-2021-29923
https://www.cve.org/CVERecord?id=CVE-2021-29923
https://nvd.nist.gov/vuln/detail/CVE-2021-29923
https://sick.codes/sick-2021-016/
https://access.redhat.com/security/cve/CVE-2021-36221
https://www.cve.org/CVERecord?id=CVE-2021-36221
https://nvd.nist.gov/vuln/detail/CVE-2021-36221
https://groups.google.com/g/golang-announce/c/uHACNfXAZqk
https://access.redhat.com/security/cve/CVE-2021-44716
https://bugzilla.redhat.com/show_bug.cgi?id=2030801
https://www.cve.org/CVERecord?id=CVE-2021-44716
https://nvd.nist.gov/vuln/detail/CVE-2021-44716
https://groups.google.com/g/golang-announce/c/hcmEScgc00k
https://access.redhat.com/security/cve/CVE-2021-44717
https://bugzilla.redhat.com/show_bug.cgi?id=2030806
https://www.cve.org/CVERecord?id=CVE-2021-44717
https://nvd.nist.gov/vuln/detail/CVE-2021-44717
Affected packages
Red Hat:openshift:4.9::el7
/
cri-o
Package
Name
cri-o
Purl
pkg:rpm/redhat/cri-o
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.22.1-17.rhaos4.9.git3029b1d.el7
Red Hat:openshift:4.9::el7
/
cri-o-debuginfo
Package
Name
cri-o-debuginfo
Purl
pkg:rpm/redhat/cri-o-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.22.1-17.rhaos4.9.git3029b1d.el7
Red Hat:openshift:4.9::el8
/
butane
Package
Name
butane
Purl
pkg:rpm/redhat/butane
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.13.1-2.rhaos4.9.el8
Red Hat:openshift:4.9::el8
/
butane-debuginfo
Package
Name
butane-debuginfo
Purl
pkg:rpm/redhat/butane-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.13.1-2.rhaos4.9.el8
Red Hat:openshift:4.9::el8
/
butane-debugsource
Package
Name
butane-debugsource
Purl
pkg:rpm/redhat/butane-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.13.1-2.rhaos4.9.el8
Red Hat:openshift:4.9::el8
/
butane-redistributable
Package
Name
butane-redistributable
Purl
pkg:rpm/redhat/butane-redistributable
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.13.1-2.rhaos4.9.el8
Red Hat:openshift:4.9::el8
/
cri-o
Package
Name
cri-o
Purl
pkg:rpm/redhat/cri-o
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.22.1-17.rhaos4.9.git3029b1d.2.el8
Red Hat:openshift:4.9::el8
/
cri-o-debuginfo
Package
Name
cri-o-debuginfo
Purl
pkg:rpm/redhat/cri-o-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.22.1-17.rhaos4.9.git3029b1d.2.el8
Red Hat:openshift:4.9::el8
/
cri-o-debugsource
Package
Name
cri-o-debugsource
Purl
pkg:rpm/redhat/cri-o-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.22.1-17.rhaos4.9.git3029b1d.2.el8
Red Hat:openshift:4.9::el8
/
cri-tools
Package
Name
cri-tools
Purl
pkg:rpm/redhat/cri-tools
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.22.0-2.el8
Red Hat:openshift:4.9::el8
/
cri-tools-debuginfo
Package
Name
cri-tools-debuginfo
Purl
pkg:rpm/redhat/cri-tools-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.22.0-2.el8
Red Hat:openshift:4.9::el8
/
cri-tools-debugsource
Package
Name
cri-tools-debugsource
Purl
pkg:rpm/redhat/cri-tools-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.22.0-2.el8
Red Hat:openshift:4.9::el8
/
golang-github-prometheus-promu
Package
Name
golang-github-prometheus-promu
Purl
pkg:rpm/redhat/golang-github-prometheus-promu
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.5.0-5.git642a960.el8
Red Hat:openshift:4.9::el8
/
ignition
Package
Name
ignition
Purl
pkg:rpm/redhat/ignition
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.12.0-3.rhaos4.9.el8
Red Hat:openshift:4.9::el8
/
ignition-debuginfo
Package
Name
ignition-debuginfo
Purl
pkg:rpm/redhat/ignition-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.12.0-3.rhaos4.9.el8
Red Hat:openshift:4.9::el8
/
ignition-debugsource
Package
Name
ignition-debugsource
Purl
pkg:rpm/redhat/ignition-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.12.0-3.rhaos4.9.el8
Red Hat:openshift:4.9::el8
/
ignition-validate
Package
Name
ignition-validate
Purl
pkg:rpm/redhat/ignition-validate
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.12.0-3.rhaos4.9.el8
Red Hat:openshift:4.9::el8
/
ignition-validate-debuginfo
Package
Name
ignition-validate-debuginfo
Purl
pkg:rpm/redhat/ignition-validate-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.12.0-3.rhaos4.9.el8
Red Hat:openshift:4.9::el8
/
prometheus-promu
Package
Name
prometheus-promu
Purl
pkg:rpm/redhat/prometheus-promu
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.5.0-5.git642a960.el8
Red Hat:openshift:4.9::el7
/
openshift
Package
Name
openshift
Purl
pkg:rpm/redhat/openshift
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.0-202202111950.p0.gb93fd35.assembly.stream.el7
Red Hat:openshift:4.9::el7
/
openshift-clients
Package
Name
openshift-clients
Purl
pkg:rpm/redhat/openshift-clients
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.0-202202140924.p0.g340e212.assembly.stream.el7
Red Hat:openshift:4.9::el7
/
openshift-clients-redistributable
Package
Name
openshift-clients-redistributable
Purl
pkg:rpm/redhat/openshift-clients-redistributable
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.0-202202140924.p0.g340e212.assembly.stream.el7
Red Hat:openshift:4.9::el7
/
openshift-hyperkube
Package
Name
openshift-hyperkube
Purl
pkg:rpm/redhat/openshift-hyperkube
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.0-202202111950.p0.gb93fd35.assembly.stream.el7
Red Hat:openshift:4.9::el8
/
openshift
Package
Name
openshift
Purl
pkg:rpm/redhat/openshift
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.0-202202111950.p0.gb93fd35.assembly.stream.el8
Red Hat:openshift:4.9::el8
/
openshift-clients
Package
Name
openshift-clients
Purl
pkg:rpm/redhat/openshift-clients
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.0-202202140924.p0.g340e212.assembly.stream.el8
Red Hat:openshift:4.9::el8
/
openshift-clients-redistributable
Package
Name
openshift-clients-redistributable
Purl
pkg:rpm/redhat/openshift-clients-redistributable
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.0-202202140924.p0.g340e212.assembly.stream.el8
Red Hat:openshift:4.9::el8
/
openshift-hyperkube
Package
Name
openshift-hyperkube
Purl
pkg:rpm/redhat/openshift-hyperkube
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.9.0-202202111950.p0.gb93fd35.assembly.stream.el8
RHSA-2022:0557 - OSV