Описание
It was found that the CVE-2021-27918, CVE-2021-31525 and CVE-2021-33196 have been incorrectly mentioned as fixed in RHSA for Serverless 1.16.0 and Serverless client kn 1.16.0. These have been fixed with Serverless 1.17.0.
CVE-2021-27918, CVE-2021-31525 and CVE-2021-33196 have been incorrectly mentioned as fixed for Serverless 1.16.0 and Serverless client kn 1.16.0.
Отчет
The flaw is moderate as the CVE-2021-27918, CVE-2021-31525 and CVE-2021-33196 are moderate. The score is assigned as per the highest score given in CVE-2021-27918 and CVE-2021-33196.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| OpenShift Serverless | knative-eventing | Not affected | ||
| OpenShift Serverless | knative-serving | Not affected | ||
| Openshift Serverless 1.17 | openshift-serverless-1/client-kn-rhel8 | Fixed | RHSA-2021:3556 | 16.09.2021 |
| Openshift Serverless 1.17 | openshift-serverless-1/eventing-apiserver-receive-adapter-rhel8 | Fixed | RHSA-2021:3556 | 16.09.2021 |
| Openshift Serverless 1.17 | openshift-serverless-1/eventing-controller-rhel8 | Fixed | RHSA-2021:3556 | 16.09.2021 |
| Openshift Serverless 1.17 | openshift-serverless-1/eventing-in-memory-channel-controller-rhel8 | Fixed | RHSA-2021:3556 | 16.09.2021 |
| Openshift Serverless 1.17 | openshift-serverless-1/eventing-in-memory-channel-dispatcher-rhel8 | Fixed | RHSA-2021:3556 | 16.09.2021 |
| Openshift Serverless 1.17 | openshift-serverless-1/eventing-mtbroker-filter-rhel8 | Fixed | RHSA-2021:3556 | 16.09.2021 |
| Openshift Serverless 1.17 | openshift-serverless-1/eventing-mtbroker-ingress-rhel8 | Fixed | RHSA-2021:3556 | 16.09.2021 |
| Openshift Serverless 1.17 | openshift-serverless-1/eventing-mtchannel-broker-rhel8 | Fixed | RHSA-2021:3556 | 16.09.2021 |
Показывать по
Дополнительная информация
Статус:
7.5 High
CVSS3
Связанные уязвимости
It was found that the CVE-2021-27918, CVE-2021-31525 and CVE-2021-33196 have been incorrectly mentioned as fixed in RHSA for Serverless 1.16.0 and Serverless client kn 1.16.0. These have been fixed with Serverless 1.17.0.
It was found that the CVE-2021-27918, CVE-2021-31525 and CVE-2021-33196 have been incorrectly mentioned as fixed in RHSA for Serverless 1.16.0 and Serverless client kn 1.16.0. These have been fixed with Serverless 1.17.0.
7.5 High
CVSS3