Vulnerability Database
Blog
FAQ
Docs
RHSA-2025:9311
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2025:9311
Import Source
https://security.access.redhat.com/data/osv/RHSA-2025:9311.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2025:9311
Related
GO-2025-3563
Published
2025-06-23T10:03:34Z
Modified
2025-06-25T10:06:16Z
Upstream
CVE-2025-22871
Severity
5.4 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N
CVSS Calculator
Summary
Red Hat Security Advisory: grafana security update
Details
References
https://access.redhat.com/errata/RHSA-2025:9311
https://access.redhat.com/security/updates/classification/#moderate
https://bugzilla.redhat.com/show_bug.cgi?id=2358493
https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_9311.json
https://access.redhat.com/security/cve/CVE-2025-22871
https://www.cve.org/CVERecord?id=CVE-2025-22871
https://nvd.nist.gov/vuln/detail/CVE-2025-22871
https://go.dev/cl/652998
https://go.dev/issue/71988
https://groups.google.com/g/golang-announce/c/Y2uBTVKjBQk
https://pkg.go.dev/vuln/GO-2025-3563
Affected packages
Red Hat:rhel_aus:8.2::appstream
/
grafana
Package
Name
grafana
Purl
pkg:rpm/redhat/grafana
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
Red Hat:rhel_aus:8.2::appstream
/
grafana-azure-monitor
Package
Name
grafana-azure-monitor
Purl
pkg:rpm/redhat/grafana-azure-monitor
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
Red Hat:rhel_aus:8.2::appstream
/
grafana-cloudwatch
Package
Name
grafana-cloudwatch
Purl
pkg:rpm/redhat/grafana-cloudwatch
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
Red Hat:rhel_aus:8.2::appstream
/
grafana-debuginfo
Package
Name
grafana-debuginfo
Purl
pkg:rpm/redhat/grafana-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
Red Hat:rhel_aus:8.2::appstream
/
grafana-elasticsearch
Package
Name
grafana-elasticsearch
Purl
pkg:rpm/redhat/grafana-elasticsearch
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
Red Hat:rhel_aus:8.2::appstream
/
grafana-graphite
Package
Name
grafana-graphite
Purl
pkg:rpm/redhat/grafana-graphite
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
Red Hat:rhel_aus:8.2::appstream
/
grafana-influxdb
Package
Name
grafana-influxdb
Purl
pkg:rpm/redhat/grafana-influxdb
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
Red Hat:rhel_aus:8.2::appstream
/
grafana-loki
Package
Name
grafana-loki
Purl
pkg:rpm/redhat/grafana-loki
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
Red Hat:rhel_aus:8.2::appstream
/
grafana-mssql
Package
Name
grafana-mssql
Purl
pkg:rpm/redhat/grafana-mssql
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
Red Hat:rhel_aus:8.2::appstream
/
grafana-mysql
Package
Name
grafana-mysql
Purl
pkg:rpm/redhat/grafana-mysql
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
Red Hat:rhel_aus:8.2::appstream
/
grafana-opentsdb
Package
Name
grafana-opentsdb
Purl
pkg:rpm/redhat/grafana-opentsdb
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
Red Hat:rhel_aus:8.2::appstream
/
grafana-postgres
Package
Name
grafana-postgres
Purl
pkg:rpm/redhat/grafana-postgres
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
Red Hat:rhel_aus:8.2::appstream
/
grafana-prometheus
Package
Name
grafana-prometheus
Purl
pkg:rpm/redhat/grafana-prometheus
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
Red Hat:rhel_aus:8.2::appstream
/
grafana-stackdriver
Package
Name
grafana-stackdriver
Purl
pkg:rpm/redhat/grafana-stackdriver
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.3.6-8.el8_2
RHSA-2025:9311 - OSV