Red Hat Updates
2501Warning Date
Severity Level
Warning Number
Target Sector
12 August, 2020
● High
2020-1627
All
Description:
Red Hat has released security updates to address vulnerabilities in the following products:
- kernel-rt
- MRG Realtime
- python-paunch and openstack-tripleo-heat-templates
- Red Hat OpenStack for IBM Power
- Red Hat OpenStack
- .NET Core 3.1
- dotNET on RHEL (for RHEL Server)
- dotNET on RHEL (for RHEL Workstation)
- Red Hat Enterprise Linux Server – TUS
- Red Hat OpenShift Service Mesh 1.1
- OpenShift Container Platform 4.5.5
- Red Hat OpenShift Container Platform
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Denial of service attack (DoS)
- Bypass of a protection mechanism
- Escalation of privilege
Best practice and Recommendations:
The CERT team encourages users to review Red Hat security advisory and apply the necessary updates:
- https://access.redhat.com/errata/RHSA-2020:3389
- https://access.redhat.com/errata/RHSA-2020:3406
- https://access.redhat.com/errata/RHSA-2020:3410
- https://access.redhat.com/errata/RHSA-2020:3421
- https://access.redhat.com/errata/RHSA-2020:3422
- https://access.redhat.com/errata/RHSA-2020:3425
- https://access.redhat.com/errata/RHSA-2020:3414