Red Hat Updates
2570Warning Date
Severity Level
Warning Number
Target Sector
15 December, 2021
● Critical
2021-4057
All
Description:
Red Hat has released security updates to address serveral vulnerabilities in the following products:
- Red Hat AMQ Streams 1.8.4
- Red Hat JBoss Middleware Text-Only Advisories for MIDDLEWARE 1 x86_64
- Openshift Logging Security Release (5.0.10)
- Red Hat OpenShift Container Platform 4.7 for RHEL 8 x86_64
- OpenShift Container Platform 4.8.z
- Red Hat OpenShift Container Platform 4.8 for RHEL 8 x86_64
- Red Hat OpenShift Container Platform for Power 4.8 for RHEL 8 ppc64le
- Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.8 for RHEL 8 s390x
- OpenShift Container Platform 3.11.z
- Red Hat OpenShift Container Platform 3.11 x86_64
- Red Hat OpenShift Container Platform for Power 3.11 ppc64le
- Red Hat Fuse 7.10.0
- Red Hat Fuse 1 x86_64
- Red Hat AMQ Streams 1.6.5
- Red Hat JBoss Middleware Text-Only Advisories for MIDDLEWARE 1 x86_64
- Red Hat Data Grid 8.2.2
- Red Hat JBoss Data Grid Text-Only Advisories x86_64
- Red Hat Integration Camel-K 1.6.2
- Red Hat Integration - Camel K 1 x86_64
- Openshift Logging
- Red Hat OpenShift Container Platform 4.8 for RHEL 8 x86_64
- Red Hat Integration Camel Extensions for Quarkus GA
- Red Hat Integration Text-Only Advisories x86_64
- Red Hat build of Eclipse Vert.x 4.1.5 SP1
- Red Hat Openshift Application Runtimes Text-Only Advisories x86_64
- Cryostat
- Cryostat 2 x86_64
Threats:
An attacker could exploit these vulnerabilities by doing the following:
- Unauthorized disclosure of information
- Execute arbitrary code
- Directory Traversal
- Denial of service attack (DoS)
Best practice and Recommendations:
The CERT team encourages users to review Red Hat security advisory and apply the necessary updates:
- https://access.redhat.com/errata/RHSA-2021:5138
- https://access.redhat.com/errata/RHSA-2021:5137
- https://access.redhat.com/errata/RHSA-2021:5134
- https://access.redhat.com/errata/RHSA-2021:5133
- https://access.redhat.com/errata/RHSA-2021:5132
- https://access.redhat.com/errata/RHSA-2021:5130
- https://access.redhat.com/errata/RHSA-2021:5129
- https://access.redhat.com/errata/RHSA-2021:5128
- https://access.redhat.com/errata/RHSA-2021:5127
- https://access.redhat.com/errata/RHSA-2021:5126
- https://access.redhat.com/errata/RHSA-2021:5093
- https://access.redhat.com/errata/RHSA-2021:5108
- https://access.redhat.com/errata/RHSA-2021:5110
- https://access.redhat.com/errata/RHSA-2021:5094