Red Hat Alert
2488Warning Date
Severity Level
Warning Number
Target Sector
11 September, 2022
● High
2022-5221
All
Red Hat has released security updates to address several vulnerabilities in the following products:
- openvswitch2.17
- Red Hat Enterprise Linux Fast Datapath
- Red Hat Enterprise Linux Fast Datapath (for IBM z Systems)
- Red Hat Enterprise Linux Fast Datapath (for RHEL for ARM 64)
- Red Hat Enterprise Linux Fast Datapath (for RHEL Server for IBM Power LE)
- OpenShift Container Platform 4.10.31
- Red Hat OpenShift Container Platform for IBM Z and LinuxONE
- Red Hat OpenShift Container Platform for ARM 64
- Red Hat OpenShift Container Platform
- Red Hat OpenShift Container Platform for Power
- RHV RHEL Host (ovirt-host) [ovirt-4.5.2]
- Red Hat Virtualization
- Red Hat Virtualization Host
- Red Hat Virtualization for IBM Power LE
- RHV Manager (ovirt-engine) [ovirt-4.5.2]
- Red Hat Virtualization Manager
- OpenShift Container Platform 4.6.61
- Red Hat OpenShift Container Platform
- Red Hat OpenShift Container Platform for Power
- Red Hat OpenShift Container Platform for IBM Z and LinuxONE
Threats:
An attacker could exploit these vulnerabilities by doing the following:
- Denial of service attack (DoS)
- Command injection
- Execute arbitrary code
- Cross-site scripting (XSS)
- Authentication bypass
The CERT team encourages users to review Red Hat security advisory and apply the necessary updates: