RHSA-2020:2593: Moderate: OpenShift Container Platform 4.2.36 python-psutil security update
Red Hat OpenShift Container Platform is Red Hat's cloud computingKubernetes application platform solution designed for on-premise or privatecloud deployments.Security Fix(es): python-psutil: double free because of refcount mishandling (CVE-2019-18874) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/python-psutilto a version that resolves this vulnerability.Fixed in 5.6.6-1.el7a - Upgrade
Upgrade
redhat/python-psutil-debuginfoto a version that resolves this vulnerability.Fixed in 5.6.6-1.el7a - Upgrade
Upgrade
redhat/python2-psutilto a version that resolves this vulnerability.Fixed in 5.6.6-1.el7a
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:2593?
The severity of RHSA-2020:2593 is classified as moderate.
How do I fix RHSA-2020:2593?
To fix RHSA-2020:2593, upgrade the affected package python-psutil to version 5.6.6-1.el7a.
What vulnerability does RHSA-2020:2593 address?
RHSA-2020:2593 addresses a double free vulnerability in python-psutil due to reference count mishandling (CVE-2019-18874).
Which versions are affected by RHSA-2020:2593?
Versions of python-psutil prior to 5.6.6-1.el7a are affected by RHSA-2020:2593.
Who is impacted by RHSA-2020:2593?
Users of Red Hat OpenShift Container Platform with the vulnerable python-psutil package installed are impacted by RHSA-2020:2593.