RHSA-2020:2306: Moderate: OpenShift Container Platform 4.2.34 ose-openshift-apiserver-container security update
Red Hat OpenShift Container Platform is Red Hat's cloud computingKubernetes application platform solution designed for on-premise or privatecloud deployments.Security Fix(es): kubernetes: A denial of service vulnerability in the Kubernetes API server allowed repeated, crafted HTTP requests to exhaust available memory and cause a crash (CVE-2020-8552) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
ose-openshift-apiserver-containerto a version that resolves this vulnerability.Fixed in 4.2.34
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:2306?
The severity of RHSA-2020:2306 is classified as moderate.
How do I fix RHSA-2020:2306?
To fix RHSA-2020:2306, you should update your OpenShift Container Platform to the latest version as per the security advisory.
What vulnerability is addressed in RHSA-2020:2306?
RHSA-2020:2306 addresses a denial of service vulnerability in the Kubernetes API server.
Is RHSA-2020:2306 relevant for on-premise deployments?
Yes, RHSA-2020:2306 is relevant for on-premise deployments of the Red Hat OpenShift Container Platform.
What software components are affected by RHSA-2020:2306?
RHSA-2020:2306 affects the Kubernetes API server within the Red Hat OpenShift Container Platform.