RHSA-2022:0236: Moderate: OpenShift Container Platform 3.11.570 security update
Red Hat OpenShift Container Platform is Red Hat's cloud computingKubernetes application platform solution designed for on-premise or privatecloud deployments.Security Fix(es): log4j-core: remote code execution via JDBC Appender (CVE-2021-44832) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:0236?
The severity of RHSA-2022:0236 is classified as moderate.
How do I fix RHSA-2022:0236?
To fix RHSA-2022:0236, update to the latest version of Red Hat OpenShift Container Platform that addresses the log4j-core vulnerability.
What vulnerability is addressed in RHSA-2022:0236?
RHSA-2022:0236 addresses a remote code execution vulnerability via JDBC Appender in log4j-core (CVE-2021-44832).
Which versions of Red Hat OpenShift Container Platform are affected by RHSA-2022:0236?
RHSA-2022:0236 impacts specific versions of Red Hat OpenShift Container Platform that utilize vulnerable log4j-core components.
Is RHSA-2022:0236 related to any other vulnerabilities?
Yes, RHSA-2022:0236 specifically relates to the log4j-core vulnerability identified as CVE-2021-44832.