RHSA-2019:2769
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: OpenShift Container Platform 3.9 security update
CVSS Metrics
- v3.0•HIGH•Score: 7.5CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Systems
- redhat•ansible-service-broker
< 0:1.1.20-2.el7
- redhat•ansible-service-broker-container-scripts
< 0:1.1.20-2.el7
- redhat•ansible-service-broker-selinux
< 0:1.1.20-2.el7
- redhat•atomic-openshift
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-clients
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-clients-redistributable
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-cluster-capacity
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-descheduler
< 0:3.9.13-2.git.267.bb59a3f.el7
- redhat•atomic-openshift-docker-excluder
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-dockerregistry
< 0:3.9.101-1.git.1.13625cf.el7
- redhat•atomic-openshift-excluder
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-federation-services
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-master
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-node
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-node-problem-detector
< 0:3.9.13-2.git.167.5d6b0d4.el7
- redhat•atomic-openshift-pod
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-sdn-ovs
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-service-catalog
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-template-service-broker
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-tests
< 0:3.9.101-1.git.0.150f595.el7
- redhat•atomic-openshift-web-console
< 0:3.9.101-1.git.1.601c6d2.el7
- redhat•cockpit
< 0:195-2.rhaos.el7
- redhat•cockpit-debuginfo
< 0:195-2.rhaos.el7
- redhat•cockpit-kubernetes
< 0:195-2.rhaos.el7
- redhat•containernetworking-plugins
< 0:0.5.2-6.el7
- redhat•containernetworking-plugins-debuginfo
< 0:0.5.2-6.el7
- redhat•cri-o
< 0:1.9.16-3.git858756d.el7
- redhat•cri-o-debuginfo
< 0:1.9.16-3.git858756d.el7
- redhat•cri-tools
< 0:1.0.0-6.rhaos3.9.git8e6013a.el7
- redhat•cri-tools-debuginfo
< 0:1.0.0-6.rhaos3.9.git8e6013a.el7
- redhat•golang-github-openshift-oauth-proxy
< 0:2.1-3.git885c9f40.el7
- redhat•golang-github-openshift-prometheus-alert-buffer
< 0:0-3.gitceca8c1.el7
- redhat•golang-github-prometheus-alertmanager
< 0:0.14.0-2.git30af4d0.el7
- redhat•golang-github-prometheus-node_exporter
< 0:3.9.101-1.git.1.8295224.el7
- redhat•golang-github-prometheus-prometheus
< 0:2.2.1-2.gitbc6058c.el7
- redhat•golang-github-prometheus-promu
< 0:0-5.git85ceabc.el7
- redhat•hawkular-openshift-agent
< 0:1.2.2-3.el7
- redhat•heapster
< 0:1.3.0-4.el7
- redhat•image-inspector
< 0:2.1.3-2.el7
- redhat•openshift-enterprise-image-registry
< 0:3.8.0-2.git.216.b6b90bb.el7
- redhat•openshift-eventrouter
< 0:0.1-3.git5bd9251.el7
- redhat•openshift-eventrouter-debuginfo
< 0:0.1-3.git5bd9251.el7
- redhat•openshift-external-storage
< 0:0.0.1-9.git78d6339.el7
- redhat•openshift-external-storage-debuginfo
< 0:0.0.1-9.git78d6339.el7
- redhat•openshift-external-storage-efs-provisioner
< 0:0.0.1-9.git78d6339.el7
- redhat•openshift-external-storage-local-provisioner
< 0:0.0.1-9.git78d6339.el7
- redhat•openshift-external-storage-snapshot-controller
< 0:0.0.1-9.git78d6339.el7
- redhat•openshift-external-storage-snapshot-provisioner
< 0:0.0.1-9.git78d6339.el7
- redhat•openvswitch-ovn-kubernetes
< 0:0.1.0-3.el7
- redhat•prometheus
< 0:2.2.1-2.gitbc6058c.el7
Showing first 50 affected entries in server-rendered view.
References (21)
- https://access.redhat.com/errata/RHSA-2019:2769
- https://access.redhat.com/security/updates/classification/#important
- https://bugzilla.redhat.com/show_bug.cgi?id=1732192
- https://bugzilla.redhat.com/show_bug.cgi?id=1735645
- https://bugzilla.redhat.com/show_bug.cgi?id=1735744
- https://security.access.redhat.com/data/csaf/v2/advisories/2019/rhsa-2019_2769.json
- https://access.redhat.com/security/cve/CVE-2019-9512
- https://www.cve.org/CVERecord?id=CVE-2019-9512
- https://nvd.nist.gov/vuln/detail/CVE-2019-9512
- https://github.com/Netflix/security-bulletins/blob/master/advisories/third-party/2019-002.md
- https://groups.google.com/forum/#!topic/golang-announce/65QixT3tcmg
- https://groups.google.com/forum/#!topic/kubernetes-security-announce/wlHLHit1BqA
- https://nodejs.org/en/blog/vulnerability/aug-2019-security-releases/
- https://www.mail-archive.com/grpc-io@googlegroups.com/msg06408.html
- https://access.redhat.com/security/cve/CVE-2019-9514
- https://www.cve.org/CVERecord?id=CVE-2019-9514
- https://nvd.nist.gov/vuln/detail/CVE-2019-9514
- https://access.redhat.com/security/cve/CVE-2019-11247
- https://www.cve.org/CVERecord?id=CVE-2019-11247
- https://nvd.nist.gov/vuln/detail/CVE-2019-11247
- https://groups.google.com/forum/#!topic/kubernetes-security-discuss/Vf31dXp0EJc