RHSA-2021:5071: Moderate: Red Hat OpenStack Platform 16.1 (python-eventlet) security update
Eventlet is a networking library written in Python. It achieves highscalability by using non-blocking io while at the same time retaining highprogrammer usability by using coroutines to make the non-blocking iooperations appear blocking at the source codelevel.Security Fix(es): improper handling of highly compressed data and memory allocation with excessive size allows DoS (CVE-2021-21419)For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVEpage listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:5071?
The severity of RHSA-2021:5071 is classified as moderate.
How do I fix RHSA-2021:5071?
To fix RHSA-2021:5071, update to the latest package versions of python-eventlet and python3-eventlet as specified in the advisory.
What does RHSA-2021:5071 address in Eventlet?
RHSA-2021:5071 addresses security vulnerabilities found in the Eventlet networking library.
Which versions of Eventlet are affected by RHSA-2021:5071?
RHSA-2021:5071 affects versions of python-eventlet and python3-eventlet up to 0.25.2-5.el8.
Is it necessary to apply the update for RHSA-2021:5071?
Yes, applying the update for RHSA-2021:5071 is necessary to mitigate potential security risks.