RHSA-2022:1276

Advisory lineage Upstream: 16 Downstream: 0
Published: 30 Sept 2024, 14:20
Last modified:03 Jun 2026, 10:01

Vulnerability Summary

Overall Risk (default)
high
70/100
CVSS Score
9.4 CRITICAL
3.1 (osv_red_hat)
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

30 Sept 2024, 14:20
Published
Vulnerability first disclosed
03 Jun 2026, 10:01
Last Modified
Vulnerability information updated

Description

Red Hat Security Advisory: Red Hat OpenShift Service Mesh 2.0.9 security update

CVSS Metrics

  • v3.1CRITICALScore: 9.4CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L

Affected Systems

  • redhatkiali

    < 0:v1.24.7.redhat1-1.el8

  • redhatservicemesh

    < 0:2.0.9-3.el8

  • redhatservicemesh-istioctl

    < 0:2.0.9-3.el8

  • redhatservicemesh-mixc

    < 0:2.0.9-3.el8

  • redhatservicemesh-mixs

    < 0:2.0.9-3.el8

  • redhatservicemesh-pilot-agent

    < 0:2.0.9-3.el8

  • redhatservicemesh-pilot-discovery

    < 0:2.0.9-3.el8

  • redhatservicemesh-prometheus

    < 0:2.14.0-16.el8.1

  • redhatservicemesh-proxy

    < 0:2.0.9-3.el8

References (79)