[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2018:2906-01 -- Redhat atomic-openshift, openshift-ansible

ID: oval:org.secpod.oval:def:502584Date: (C)2018-12-06   (M)2023-11-13
Class: PATCHFamily: unix




Red Hat OpenShift Container Platform is Red Hat"s cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the RPM packages for Red Hat OpenShift Container Platform 3.7.72. See the following advisory for the container images for this release: https://access.redhat.com/errata/RHBA-2018:2905 Security Fix: * atomic-openshift: oc patch with json causes masterapi service crash For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Red Hat would like to thank Lars Haugan for reporting this issue. Bug Fix: * The etcd v2 to v3 migration playbooks improperly attempted to assign a TTL of 0 seconds to certain migrated keys when the environment was previously configured for a 0-second TTL, causing the v2 to v3 migration to fail. The migration playbooks now assign a 1-second TTL to migrated keys when those keys had a 0-second TTL configured. This ensures that TTLs are migrated and those keys will immediately expire after 1s. This effectively provides a 0-second TTL because this migration process happens while the API is offline and those keys would expire prior to the API coming back online. All OpenShift Container Platform 3.7 users are advised to upgrade to these updated packages and images.

Platform:
Red Hat Enterprise Linux 7
Product:
atomic-openshift
openshift-ansible
Reference:
RHSA-2018:2906-01
CVE-2018-14632
CVE-2018-1002105
CVE    2
CVE-2018-14632
CVE-2018-1002105
CPE    3
cpe:/o:redhat:enterprise_linux:7
cpe:/a:redhat:atomic-openshift
cpe:/a:redhat:openshift-ansible

© SecPod Technologies