RHSA-2022:0163: Important: Cryostat security update
The RHEL-8 based Cryostat container images have been updated with a security fix for "CVE-2021-44716 golang: net/http: limit growth of header canonicalization cache".Users of RHEL-8 based Cryostat container images are advised to upgrade to these updated images, which contain backported patches to correct this security issue. Users of these images are also encouraged to rebuild all container images that depend on these images.You can find images updated by this advisory in Red Hat Ecosystem Catalog (see References).
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:0163?
The severity of RHSA-2022:0163 is classified as important.
How do I fix RHSA-2022:0163?
To fix RHSA-2022:0163, users are advised to update the RHEL-8 based Cryostat container images.
What is the vulnerability associated with RHSA-2022:0163?
RHSA-2022:0163 addresses CVE-2021-44716, which involves limiting the growth of the header canonicalization cache in the net/http package of Go.
Who is affected by RHSA-2022:0163?
Users of RHEL-8 based Cryostat container images are affected by RHSA-2022:0163.
What product does RHSA-2022:0163 relate to?
RHSA-2022:0163 relates to the Red Hat Cryostat product.