Red Hat Updates
2846Warning Date
Severity Level
Warning Number
Target Sector
5 July, 2020
● High
2020-1447
All
Description:
Red Hat has released security updates to address vulnerabilities in the following products:
- Red Hat OpenShift Service Mesh 1.1 servicemesh-operator
- Red Hat OpenShift Service Mesh servicemesh-grafana
- Red Hat OpenShift Service Mesh 1.1 servicemesh-proxy
- Red Hat OpenShift Service Mesh servicemesh-cni
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Remote code execution
- Denial of service attack (DoS)
- Cross-site scripting (XSS)
Best practice and Recommendations:
The CERT team encourages users to review Red Hat security advisory and apply the necessary updates:
- https://access.redhat.com/errata/RHSA-2020:2795
- https://access.redhat.com/errata/RHSA-2020:2796
- https://access.redhat.com/errata/RHSA-2020:2798
- https://access.redhat.com/errata/RHSA-2020:2799
- https://access.redhat.com/errata/RHSA-2020:2813
- https://access.redhat.com/errata/RHSA-2020:2814
- https://access.redhat.com/errata/RHSA-2020:2816
- https://access.redhat.com/errata/RHSA-2020:2817