Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Red Hat: RHSA-2023-4576-01 Moderate: VolSync 0.6.3 Enhancements Summary

red hat
Calendar Grey August 8, 2023
Dist Redhat Esm H88
Red Hat Product Security emphasizes the improvements in VolSync v0.6.3, assigning a moderate impact rating to various vulnerabilities.
VolSync v0.6.3 security fixes and enhancements Red Hat Product Security has rated this update as having a security impact of Moderate

Solution

For details on how to install VolSync, refer to:

https://docs.redhat.com/en/documentation/red_hat_advanced_cluster_management_for_kubernetes/2.7/html/add-ons/add-ons-overview#volsync-rep

Summary

VolSync is a Kubernetes operator that enables asynchronous replication of persistent volumes within a cluster, or across clusters. After deploying the VolSync operator, it can create and maintain copies of your persistent data.
For more information about VolSync, see:
https://docs.redhat.com/en/documentation/red_hat_advanced_cluster_management_for_kubernetes/2.7/html/add-ons/add-ons-overview#volsync
or the VolSync open source community website at: https://volsync.readthedocs.io/en/stable/.
This advisory contains enhancements and updates to the VolSync container images.
Security fix(es): * CVE-2023-3089 openshift: OCP & FIPS mode

References

https://access.redhat.com/security/cve/CVE-2020-24736 https://access.redhat.com/security/cve/CVE-2022-35252 https://access.redhat.com/security/cve/CVE-2022-36227 https://access.redhat.com/security/cve/CVE-2022-43552 https://access.redhat.com/security/cve/CVE-2023-0361 https://access.redhat.com/security/cve/CVE-2023-1667 https://access.redhat.com/security/cve/CVE-2023-2283 https://access.redhat.com/security/cve/CVE-2023-3089 https://access.redhat.com/security/cve/CVE-2023-24329 https://access.redhat.com/security/cve/CVE-2023-26604 https://access.redhat.com/security/cve/CVE-2023-27535 https://access.redhat.com/security/cve/CVE-2023-38408 https://access.redhat.com/security/updates/classification#moderate https://access.redhat.com/security/vulnerabilities/RHSB-2023-001

Package List


Advisory ID: RHSA-2023:4576-01
Product: Red Hat ACM
Issue date: 2023-08-08

Topic

VolSync v0.6.3 security fixes and enhancementsRed Hat Product Security has rated this update as having a security impactof Moderate. A Common Vulnerability Scoring System (CVSS) base score, whichgives a detailed severity rating, is available for each vulnerability fromthe CVE links in the References section.

Relevant Releases Architectures

Bugs Fixed

2212085 - CVE-2023-3089 openshift: OCP & FIPS mode

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here