Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

RedHat OpenShift: RHSA-2022-5699-01 Moderate: Scheduler Operator Update

red hat
Calendar Grey August 3, 2022
Dist Redhat Esm H88
This advisory underscores moderate security risks in OpenShift's Secondary Scheduler. Administrators should review findings to enhance deployment security
Secondary Scheduler Operator for Red Hat OpenShift 1.0.1 Red Hat Product Security has rated this update as having a security impact of Moderate

Solution

For Secondary Scheduler Operator 1.0.1 see the following documentation, which will be updated shortly, for detailed release notes:

For more information on Secondary Scheduler Operator for Red Hat OpenShift 1.0.1, see the following release notes:

https://docs.openshift.com/en/container-platform/4.10/nodes/scheduling/secondary_scheduler/nodes-secondary-scheduler-release-notes.html#secondary-scheduler-operator-release-notes-1.0.1

Summary

Secondary Scheduler Operator for Red Hat OpenShift 1.0.1
Security Fix(es):
* golang: syscall: faccessat checks wrong group (CVE-2022-29526)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References

https://access.redhat.com/security/cve/CVE-2018-25032 https://access.redhat.com/security/cve/CVE-2021-3634 https://access.redhat.com/security/cve/CVE-2021-40528 https://access.redhat.com/security/cve/CVE-2022-1271 https://access.redhat.com/security/cve/CVE-2022-22576 https://access.redhat.com/security/cve/CVE-2022-27774 https://access.redhat.com/security/cve/CVE-2022-27776 https://access.redhat.com/security/cve/CVE-2022-27782 https://access.redhat.com/security/cve/CVE-2022-29526 https://access.redhat.com/security/cve/CVE-2022-29824 https://access.redhat.com/security/updates/classification/#moderate

Package List


Advisory ID: RHSA-2022:5699-01
Product: OSSO
Advisory URL: Issue date: 2022-07-28

Topic

Secondary Scheduler Operator for Red Hat OpenShift 1.0.1Red Hat Product Security has rated this update as having a security impactofModerate. A Common Vulnerability Scoring System (CVSS) base score, whichgives adetailed severity rating, is available for each vulnerability from the CVElink(s) in the References section.

Relevant Releases Architectures

Bugs Fixed

2084085 - CVE-2022-29526 golang: syscall: faccessat checks wrong group

5. JIRA issues fixed (https://issues.redhat.com/):

WRKLDS-465 - Secondary Scheduler Operator for Red Hat OpenShift 1.0.1 release

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here