Alerts This Week
Warning Icon 1 923
Alerts This Week
Warning Icon 1 923

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":556,"type":"x","order":1,"pct":78.75,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.25,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.18,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -8 articles for you...
98

Red Hat OpenShift 3.11: RHSA-2019-4052-01 Moderate: Bearer Token Issue

An update for atomic-openshift is now available for Red Hat OpenShift Container Platform 3.11. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: OpenShift Container Platform 3.11 atomic-openshift security update Advisory ID: RHSA-2019:4052-01 Product: Red Hat OpenShift Enterprise Advisory URL: https://access.redhat.com/errata/RHSA-2019:4052 Issue date: 2019-12-16 CVE Names: CVE-2019-11250 ==================================================================== 1. Summary: An update for atomic-openshift is now available for Red Hat OpenShift Container Platform 3.11. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat OpenShift Container Platform 3.11 - noarch, ppc64le, x86_64 3. Description: Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. Security Fix(es): * kubernetes: Bearer tokens written to logs at high verbosity levels (> = 7) (CVE-2019-11250) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: See the following documentation, which will be updated shortly for release 3.11.157, for important instructions on how to upgrade your cluster and fully apply this asynchronous errataupdate: https://docs.redhat.com/en/documentation/openshift_container_platform/3.11/html/release_notes/release-notes-ocp-3-11-release-notes 5. Bugs fixed (https://bugzilla.redhat.com/): 1740434 - CVE-2019-11250 kubernetes: Bearer tokens written to logs at high verbosity levels (> = 7) 6. Package List: Red Hat OpenShift Container Platform 3.11: Source: atomic-openshift-3.11.157-1.git.0.dfe38da.el7.src.rpm noarch: atomic-openshift-docker-excluder-3.11.157-1.git.0.dfe38da.el7.noarch.rpm atomic-openshift-excluder-3.11.157-1.git.0.dfe38da.el7.noarch.rpm ppc64le: atomic-openshift-3.11.157-1.git.0.dfe38da.el7.ppc64le.rpm atomic-openshift-clients-3.11.157-1.git.0.dfe38da.el7.ppc64le.rpm atomic-openshift-hyperkube-3.11.157-1.git.0.dfe38da.el7.ppc64le.rpm atomic-openshift-hypershift-3.11.157-1.git.0.dfe38da.el7.ppc64le.rpm atomic-openshift-master-3.11.157-1.git.0.dfe38da.el7.ppc64le.rpm atomic-openshift-node-3.11.157-1.git.0.dfe38da.el7.ppc64le.rpm atomic-openshift-pod-3.11.157-1.git.0.dfe38da.el7.ppc64le.rpm atomic-openshift-sdn-ovs-3.11.157-1.git.0.dfe38da.el7.ppc64le.rpm atomic-openshift-template-service-broker-3.11.157-1.git.0.dfe38da.el7.ppc64le.rpm atomic-openshift-tests-3.11.157-1.git.0.dfe38da.el7.ppc64le.rpm x86_64: atomic-openshift-3.11.157-1.git.0.dfe38da.el7.x86_64.rpm atomic-openshift-clients-3.11.157-1.git.0.dfe38da.el7.x86_64.rpm atomic-openshift-clients-redistributable-3.11.157-1.git.0.dfe38da.el7.x86_64.rpm atomic-openshift-hyperkube-3.11.157-1.git.0.dfe38da.el7.x86_64.rpm atomic-openshift-hypershift-3.11.157-1.git.0.dfe38da.el7.x86_64.rpm atomic-openshift-master-3.11.157-1.git.0.dfe38da.el7.x86_64.rpm atomic-openshift-node-3.11.157-1.git.0.dfe38da.el7.x86_64.rpm atomic-openshift-pod-3.11.157-1.git.0.dfe38da.el7.x86_64.rpm atomic-openshift-sdn-ovs-3.11.157-1.git.0.dfe38da.el7.x86_64.rpm atomic-openshift-template-service-broker-3.11.157-1.git.0.dfe38da.el7.x86_64.rpm atomic-openshift-tests-3.11.157-1.git.0.dfe38da.el7.x86_64.rpm These packages are GPG signed by Red Hat for security. Our keyand details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2019-11250 https://access.redhat.com/security/updates/classification/#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2019 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBXfeMBtzjgjWX9erEAQjm1g//a6m9MYdqDNBrKp9Xp+vDSXELdKQ0MUhj 2Xp/8G9ykFiu13ZFatcV7KLscHNZ19Zn0vtzaaQUqRCBzZJBskOuaTeF643Bjv8X MRGt3S5hq+AkqgUO1ZgfNI0PGrAldx5kF/pM3S7FIC8qxPE2/bQJ9mfQ4z25yxC8 SduDrU2akasxDNJv7Q3GdirLxIejUvz80d+YbpaPW1sDcnt3X6fMg/gv2ROR3u+U dDrcmq1EyWFhkerTjiTk6zt3xzYZKCX/14uff7euovxIQ1WK842snJRjCBvJl5Np VZVfr4818JnbQjvYEZm03xwVzAJd4EoWX8woPviEme7MSYFmE7YYyVWyyaBQPP+k o8rJoWq/LN+ZEw9nWnxyugxIYOd8p7TNMzG/RCENbsa9313mXgpiuvWbWT1AGozM zUGmTSt4jEABS9044ulsZF06DV9RmBWZaYDPCh7zU6k1+DhSx3kJKobKWiq0kGOs es1MKXWohfcgE4Ng3KhLiQe3PolT6OLB4hRA9yOWpSvDhV8DKjeVQrOImY0i+vRQ jk61FyKXUkp5B3rCdX6vsJeagw+/eOfNVQMJ+1RDSbBCZFltBycwyOj05OuIEoZx XGTGO60OGg/E8nXeaVrWkaH0ebmTDzs+sJGA3GdNEFDGZpvr+2CdCgysSH6rj/uV UFrJ3uBFt8E=vMgM -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . An OpenShift Container Platform upgrade resolves a significant security concern involving bearer tokens. Discover additional details!. Red Hat OpenShift, atomic-openshift, kubernetes security, container platform. . LinuxSecurity.com Team

Calendar%202 Dec 16, 2019 Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":556,"type":"x","order":1,"pct":78.75,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.25,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.18,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here