RHBA-2019:0326
Vulnerability Summary
Timeline
Description
Red Hat Bug Fix Advisory: OpenShift Container Platform 3.11 bug fix update
CVSS Metrics
- v3.0•HIGH•Score: 8.8CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Systems
- redhat•atomic-enterprise-service-catalog
< 1:3.11.82-1.git.1673.133961e.el7
- redhat•atomic-enterprise-service-catalog-svcat
< 1:3.11.82-1.git.1673.133961e.el7
- redhat•atomic-openshift
< 0:3.11.82-1.git.0.08bc31b.el7
- redhat•atomic-openshift-clients
< 0:3.11.82-1.git.0.08bc31b.el7
- redhat•atomic-openshift-clients-redistributable
< 0:3.11.82-1.git.0.08bc31b.el7
- redhat•atomic-openshift-cluster-autoscaler
< 0:3.11.82-1.git.0.efb6af0.el7
- redhat•atomic-openshift-descheduler
< 0:3.11.82-1.git.300.89765c9.el7
- redhat•atomic-openshift-docker-excluder
< 0:3.11.82-1.git.0.08bc31b.el7
- redhat•atomic-openshift-dockerregistry
< 0:3.11.82-1.git.452.0ce6383.el7
- redhat•atomic-openshift-excluder
< 0:3.11.82-1.git.0.08bc31b.el7
- redhat•atomic-openshift-hyperkube
< 0:3.11.82-1.git.0.08bc31b.el7
- redhat•atomic-openshift-hypershift
< 0:3.11.82-1.git.0.08bc31b.el7
- redhat•atomic-openshift-master
< 0:3.11.82-1.git.0.08bc31b.el7
- redhat•atomic-openshift-metrics-server
< 0:3.11.82-1.git.52.2fdca3f.el7
- redhat•atomic-openshift-node
< 0:3.11.82-1.git.0.08bc31b.el7
- redhat•atomic-openshift-node-problem-detector
< 0:3.11.82-1.git.254.a448936.el7
- redhat•atomic-openshift-pod
< 0:3.11.82-1.git.0.08bc31b.el7
- redhat•atomic-openshift-sdn-ovs
< 0:3.11.82-1.git.0.08bc31b.el7
- redhat•atomic-openshift-service-idler
< 0:3.11.82-1.git.14.e353758.el7
- redhat•atomic-openshift-template-service-broker
< 0:3.11.82-1.git.0.08bc31b.el7
- redhat•atomic-openshift-tests
< 0:3.11.82-1.git.0.08bc31b.el7
- redhat•atomic-openshift-web-console
< 0:3.11.82-1.git.355.5e8b1d9.el7
- redhat•golang-github-openshift-oauth-proxy
< 0:3.11.82-1.git.425.7cac034.el7
- redhat•golang-github-prometheus-alertmanager
< 0:3.11.82-1.git.0.3bf41ce.el7
- redhat•golang-github-prometheus-node_exporter
< 0:3.11.82-1.git.1063.48444e8.el7
- redhat•golang-github-prometheus-prometheus
< 0:3.11.82-1.git.5027.9d24833.el7
- redhat•haproxy
< 0:1.8.17-3.el7
- redhat•haproxy-debuginfo
< 0:1.8.17-3.el7
- redhat•haproxy18
< 0:1.8.17-3.el7
- redhat•jenkins
< 0:2.150.2.1549032159-1.el7
- redhat•jenkins-2-plugins
< 0:3.11.1549642489-1.el7
- redhat•openshift-ansible
< 0:3.11.82-3.git.0.9718d0a.el7
- redhat•openshift-ansible-docs
< 0:3.11.82-3.git.0.9718d0a.el7
- redhat•openshift-ansible-playbooks
< 0:3.11.82-3.git.0.9718d0a.el7
- redhat•openshift-ansible-roles
< 0:3.11.82-3.git.0.9718d0a.el7
- redhat•openshift-ansible-test
< 0:3.11.82-3.git.0.9718d0a.el7
- redhat•openshift-enterprise-autoheal
< 0:3.11.82-1.git.219.0b5aff4.el7
- redhat•openshift-enterprise-cluster-capacity
< 0:3.11.82-1.git.380.cf11c51.el7
- redhat•prometheus
< 0:3.11.82-1.git.5027.9d24833.el7
- redhat•prometheus-alertmanager
< 0:3.11.82-1.git.0.3bf41ce.el7
- redhat•prometheus-node-exporter
< 0:3.11.82-1.git.1063.48444e8.el7
References (106)
- https://access.redhat.com/errata/RHBA-2019:0326
- https://bugzilla.redhat.com/show_bug.cgi?id=1506736
- https://bugzilla.redhat.com/show_bug.cgi?id=1598822
- https://bugzilla.redhat.com/show_bug.cgi?id=1615719
- https://bugzilla.redhat.com/show_bug.cgi?id=1623338
- https://bugzilla.redhat.com/show_bug.cgi?id=1634302
- https://bugzilla.redhat.com/show_bug.cgi?id=1635254
- https://bugzilla.redhat.com/show_bug.cgi?id=1635613
- https://bugzilla.redhat.com/show_bug.cgi?id=1642379
- https://bugzilla.redhat.com/show_bug.cgi?id=1642929
- https://bugzilla.redhat.com/show_bug.cgi?id=1651090
- https://bugzilla.redhat.com/show_bug.cgi?id=1651632
- https://bugzilla.redhat.com/show_bug.cgi?id=1655183
- https://bugzilla.redhat.com/show_bug.cgi?id=1657019
- https://bugzilla.redhat.com/show_bug.cgi?id=1659194
- https://bugzilla.redhat.com/show_bug.cgi?id=1659441
- https://bugzilla.redhat.com/show_bug.cgi?id=1659653
- https://bugzilla.redhat.com/show_bug.cgi?id=1659976
- https://bugzilla.redhat.com/show_bug.cgi?id=1660598
- https://bugzilla.redhat.com/show_bug.cgi?id=1664753
- https://bugzilla.redhat.com/show_bug.cgi?id=1665235
- https://bugzilla.redhat.com/show_bug.cgi?id=1666820
- https://bugzilla.redhat.com/show_bug.cgi?id=1667270
- https://bugzilla.redhat.com/show_bug.cgi?id=1667618
- https://bugzilla.redhat.com/show_bug.cgi?id=1668412
- https://bugzilla.redhat.com/show_bug.cgi?id=1668828
- https://bugzilla.redhat.com/show_bug.cgi?id=1668970
- https://bugzilla.redhat.com/show_bug.cgi?id=1669019
- https://bugzilla.redhat.com/show_bug.cgi?id=1669194
- https://bugzilla.redhat.com/show_bug.cgi?id=1669439
- https://bugzilla.redhat.com/show_bug.cgi?id=1669555
- https://bugzilla.redhat.com/show_bug.cgi?id=1669984
- https://bugzilla.redhat.com/show_bug.cgi?id=1670551
- https://bugzilla.redhat.com/show_bug.cgi?id=1673178
- https://security.access.redhat.com/data/csaf/v2/advisories/2019/rhba-2019_0326.json
- https://access.redhat.com/security/cve/CVE-2018-20102
- https://bugzilla.redhat.com/show_bug.cgi?id=1658874
- https://www.cve.org/CVERecord?id=CVE-2018-20102
- https://nvd.nist.gov/vuln/detail/CVE-2018-20102
- https://www.mail-archive.com/haproxy@formilux.org/msg32055.html
- https://access.redhat.com/security/cve/CVE-2018-20103
- https://bugzilla.redhat.com/show_bug.cgi?id=1658876
- https://www.cve.org/CVERecord?id=CVE-2018-20103
- https://nvd.nist.gov/vuln/detail/CVE-2018-20103
- https://access.redhat.com/security/cve/CVE-2018-20615
- https://bugzilla.redhat.com/show_bug.cgi?id=1663060
- https://www.cve.org/CVERecord?id=CVE-2018-20615
- https://nvd.nist.gov/vuln/detail/CVE-2018-20615
- https://access.redhat.com/security/cve/CVE-2018-1000865
- https://bugzilla.redhat.com/show_bug.cgi?id=1647059
- https://www.cve.org/CVERecord?id=CVE-2018-1000865
- https://nvd.nist.gov/vuln/detail/CVE-2018-1000865
- https://access.redhat.com/security/cve/CVE-2018-1000866
- https://www.cve.org/CVERecord?id=CVE-2018-1000866
- https://nvd.nist.gov/vuln/detail/CVE-2018-1000866
- https://access.redhat.com/security/cve/CVE-2019-3826
- https://bugzilla.redhat.com/show_bug.cgi?id=1672865
- https://www.cve.org/CVERecord?id=CVE-2019-3826
- https://nvd.nist.gov/vuln/detail/CVE-2019-3826
- https://access.redhat.com/security/cve/CVE-2019-1003000
- https://bugzilla.redhat.com/show_bug.cgi?id=1667566
- https://www.cve.org/CVERecord?id=CVE-2019-1003000
- https://nvd.nist.gov/vuln/detail/CVE-2019-1003000
- https://jenkins.io/security/advisory/2019-01-08/
- https://access.redhat.com/security/cve/CVE-2019-1003001
- https://bugzilla.redhat.com/show_bug.cgi?id=1669505
- https://www.cve.org/CVERecord?id=CVE-2019-1003001
- https://nvd.nist.gov/vuln/detail/CVE-2019-1003001
- https://access.redhat.com/security/cve/CVE-2019-1003002
- https://bugzilla.redhat.com/show_bug.cgi?id=1669508
- https://www.cve.org/CVERecord?id=CVE-2019-1003002
- https://nvd.nist.gov/vuln/detail/CVE-2019-1003002
- https://access.redhat.com/security/cve/CVE-2019-1003003
- https://bugzilla.redhat.com/show_bug.cgi?id=1668345
- https://www.cve.org/CVERecord?id=CVE-2019-1003003
- https://nvd.nist.gov/vuln/detail/CVE-2019-1003003
- https://jenkins.io/security/advisory/2019-01-16/
- https://access.redhat.com/security/cve/CVE-2019-1003004
- https://bugzilla.redhat.com/show_bug.cgi?id=1668736
- https://www.cve.org/CVERecord?id=CVE-2019-1003004
- https://nvd.nist.gov/vuln/detail/CVE-2019-1003004
- https://access.redhat.com/security/cve/CVE-2019-1003010
- https://bugzilla.redhat.com/show_bug.cgi?id=1670292
- https://www.cve.org/CVERecord?id=CVE-2019-1003010
- https://nvd.nist.gov/vuln/detail/CVE-2019-1003010
- https://jenkins.io/security/advisory/2019-01-28/#SECURITY-1095
- https://access.redhat.com/security/cve/CVE-2019-1003011
- https://bugzilla.redhat.com/show_bug.cgi?id=1670296
- https://www.cve.org/CVERecord?id=CVE-2019-1003011
- https://nvd.nist.gov/vuln/detail/CVE-2019-1003011
- https://jenkins.io/security/advisory/2019-01-28/#SECURITY-1102
- https://access.redhat.com/security/cve/CVE-2019-1003012
- https://bugzilla.redhat.com/show_bug.cgi?id=1670298
- https://www.cve.org/CVERecord?id=CVE-2019-1003012
- https://nvd.nist.gov/vuln/detail/CVE-2019-1003012
- https://jenkins.io/security/advisory/2019-01-28/#SECURITY-1201
- https://access.redhat.com/security/cve/CVE-2019-1003013
- https://bugzilla.redhat.com/show_bug.cgi?id=1670299
- https://www.cve.org/CVERecord?id=CVE-2019-1003013
- https://nvd.nist.gov/vuln/detail/CVE-2019-1003013
- https://jenkins.io/security/advisory/2019-01-28/#SECURITY-1204
- https://access.redhat.com/security/cve/CVE-2019-1003014
- https://bugzilla.redhat.com/show_bug.cgi?id=1671324
- https://www.cve.org/CVERecord?id=CVE-2019-1003014
- https://nvd.nist.gov/vuln/detail/CVE-2019-1003014
- https://jenkins.io/security/advisory/2019-01-28/#SECURITY-1253