An uncontrolled resource consumption vulnerability was discovered in HAProxy which could crash the service. This issue could allow an authenticated remote attacker to run a specially crafted malicious server in an OpenShift cluster. The biggest impact is to availability.
| Software | From | Fixed in |
|---|---|---|
| redhat / ceph_storage | 5.0 | 5.0.x |
| redhat / openshift_container_platform | 4.12 | 4.12.x |
| redhat / openshift_container_platform_for_ibm_linuxone | 4.12 | 4.12.x |
| redhat / openshift_container_platform_for_power | 4.12 | 4.12.x |
| redhat / openshift_container_platform_ibm_z_systems | 4.12 | 4.12.x |
| redhat / openshift_container_platform | 4.11 | 4.11.x |
| redhat / openshift_container_platform | 4.10 | 4.10.x |
| redhat / openshift_container_platform_for_ibm_linuxone | 4.10 | 4.10.x |
| redhat / openshift_container_platform_for_power | 4.10 | 4.10.x |
| redhat / openshift_container_platform_ibm_z_systems | 4.10 | 4.10.x |
| redhat / openshift_container_platform_for_ibm_linuxone | 4.11 | 4.11.x |
| redhat / openshift_container_platform_for_power | 4.11 | 4.11.x |
| redhat / openshift_container_platform_ibm_z_systems | 4.11 | 4.11.x |
| fedoraproject / extra_packages_for_enterprise_linux | 8.0 | 8.0.x |
| fedoraproject / fedora | 36 | 36.x |
| fedoraproject / fedora | 37 | 37.x |