RHSA-2020:2217: Moderate: OpenShift Container Platform 3.11 security update
Red Hat OpenShift Container Platform is Red Hat's cloud computingKubernetes application platform solution designed for on-premise or privatecloud deployments.Security Fix(es): jquery: Cross-site scripting was present due to improper injQuery.htmlPrefilter method (CVE-2020-11022) For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVEpage(s)listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:2217?
The severity of RHSA-2020:2217 is classified as moderate.
How do I fix RHSA-2020:2217?
To fix RHSA-2020:2217, update the atomic-openshift-web-console package to version 3.11.219-1.git.1.9b9b889.el7.
What vulnerability does RHSA-2020:2217 address?
RHSA-2020:2217 addresses a cross-site scripting vulnerability due to improper handling in the jQuery htmlPrefilter method.
Which systems are affected by RHSA-2020:2217?
RHSA-2020:2217 affects the atomic-openshift-web-console package on Red Hat OpenShift Container Platform deployments.
Is the fix for RHSA-2020:2217 available for all architectures?
Yes, the fix for RHSA-2020:2217 is available for multiple architectures including el7, x86_64, and ppc64le.