Before applying this update, make sure all previously released errata
relevant to your system have been applied.
For details on how to apply this update, refer to:
https://access.redhat.com/articles/11258
This release of Red Hat Integration - Camel K - Tech-Preview 2 serves as a
replacement for tech-preview 1, and includes bug fixes and enhancements,
which are documented in the Release Notes document linked to in the
References.
Security Fix(es):
* postgresql-jdbc: XML external entity (XXE) vulnerability in PgSQLXML
(CVE-2020-13692)
For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page(s) listed in the References section.
https://access.redhat.com/security/cve/CVE-2020-13692 https://access.redhat.com/security/updates/classification#important https://docs.redhat.com/en/documentation/red_hat_integration/2020-q4/html/release_notes_for_red_hat_integration_2020-q4/index
An update to the Camel K operator image for Red Hat Integrationtech-preview is now available. The purpose of this text-only errata is toinform you about the security issues fixed in this release.Red Hat Product Security has rated this update as having a security impactof Important. A Common Vulnerability Scoring System (CVSS) base score,which gives a detailed severity rating, is available for each vulnerabilityfrom the CVE link(s) in the References section.
1852985 - CVE-2020-13692 postgresql-jdbc: XML external entity (XXE) vulnerability in PgSQLXML
Get the latest Linux and open source security news straight to your inbox.