RHSA-2022:6062: Important: Red Hat OpenStack Platform 16.2 (collectd-libpod-stats) security update
Collectd plugin for gathering resource usage statistics from containers<br>created with the libpod library.<br>Security Fix(es):<br><li> golang: compress/gzip: stack exhaustion in Reader.Read (CVE-2022-30631)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:6062?
The severity of RHSA-2022:6062 is considered critical due to the potential for stack exhaustion vulnerabilities.
How do I fix RHSA-2022:6062?
To fix RHSA-2022:6062, update collectd-libpod-stats to version 1.0.4-2.el8 or later.
What vulnerabilities are addressed in RHSA-2022:6062?
RHSA-2022:6062 addresses the CVE-2022-30631 vulnerability involving stack exhaustion in the golang compress/gzip module.
What is collectd-libpod-stats in RHSA-2022:6062?
Collectd-libpod-stats is a plugin used to gather resource usage statistics from containers using the libpod library.
Who is affected by RHSA-2022:6062?
Users of the collectd-libpod-stats package version below 1.0.4-2.el8 are affected by RHSA-2022:6062.