RHSA-2022:0227: Moderate: Red Hat OpenShift Enterprise Logging bug fix and security update (5.3.3)
Published Jan 20, 2022
·Updated
Openshift Logging Bug Fix Release (5.3.3)Security Fix(es): log4j-core: remote code execution via JDBC Appender (CVE-2021-44832) nodejs-ua-parser-js: ReDoS via malicious User-Agent header (CVE-2021-27292)
Affected Software
1 affected component
Red Hat OpenShift Enterprise Logging
Remediation
Event History
Mar 25, 2026
Advisory Published
via Red Hat·09:35 AM
Data Sourced
via Red Hat·09:35 AM
RemedyDescriptionAffected Software
Frequently Asked Questions
1
What is the severity of RHSA-2022:0227?
RHSA-2022:0227 is classified as a moderate severity vulnerability.
2
How do I fix RHSA-2022:0227?
To fix RHSA-2022:0227, update the affected software packages to the latest versions that have the security patches applied.
3
What vulnerabilities are addressed in RHSA-2022:0227?
RHSA-2022:0227 addresses vulnerabilities CVE-2021-44832 and CVE-2021-27292.
4
What is CVE-2021-44832 referenced in RHSA-2022:0227?
CVE-2021-44832 is a security vulnerability that allows remote code execution via the JDBC Appender in log4j-core.
5
What is CVE-2021-27292 mentioned in RHSA-2022:0227?
CVE-2021-27292 is a vulnerability that enables Regular Expression Denial of Service (ReDoS) via a malicious User-Agent header in nodejs-ua-parser-js.