Bug 2066402
| Summary: | Include at OCS 4.8 container images (4) the RHEL8 CVE fixes on "expat" | ||
|---|---|---|---|
| Product: | [Red Hat Storage] Red Hat OpenShift Container Storage | Reporter: | Rejy M Cyriac <rcyriac> |
| Component: | distribution | Assignee: | Tamil <tmuthami> |
| Status: | CLOSED ERRATA | QA Contact: | Joy John Pinto <jopinto> |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | 4.8 | CC: | aeyal, bniver, branto, dkhandel, jopinto, kramdoss, madam, mmuench, muagarwa, ocs-bugs, sheggodu, sostapov, ykaul |
| Target Milestone: | --- | Keywords: | ZStream |
| Target Release: | OCS 4.8.10 | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | No Doc Update | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2022-04-25 18:09:43 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
Rejy M Cyriac
2022-03-21 16:50:13 UTC
Verified with ocp cluster 4.8.0-0.nightly-2022-04-01-224429, ceph version 14.2.11-208.el8cp and OCS 4.8.10. "rpm -qa|grep exp" output on impacted containers csi-cephfsplugin sh-4.4# rpm -qa|grep exp expat-2.2.5-4.el8_5.3.x86_64 rook-ceph-operator: sh-4.4$ rpm -qa|grep exp expat-2.2.5-4.el8_5.3.x86_64 nobaa core: sh-4.4$ rpm -qa|grep exp expat-2.2.5-4.el8_5.3.x86_64 must-gather-ch82k-helper sh-4.4$ rpm -qa|grep exp expat-2.2.5-4.el8_5.3.x86_64 Closing the bug as updated builds with fixes for CVEs are displayed. Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (Red Hat OpenShift Container Storage 4.8.10 Bug Fix Update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2022:1531 |