Authorization Bypass Through User-Controlled Key in GitHub repository emicklei/go-restful prior to v3.8.0. https://huntr.dev/bounties/be837427-415c-4d8c-808b-62ce20aa84f1 https://github.com/emicklei/go-restful/commit/fd3c327a379ce08c68ef18765bdc925f5d9bad10
Created containerd tracking bugs for this issue: Affects: epel-7 [bug 2097966] Affects: fedora-all [bug 2097965] Created cri-o:1.19/cri-o tracking bugs for this issue: Affects: fedora-all [bug 2097968] Created cri-o:1.20/cri-o tracking bugs for this issue: Affects: fedora-all [bug 2097969] Created cri-o:1.21/cri-o tracking bugs for this issue: Affects: fedora-all [bug 2097970] Created cri-o:1.22/cri-o tracking bugs for this issue: Affects: fedora-all [bug 2097971] Created golang-github-emicklei-restful tracking bugs for this issue: Affects: fedora-all [bug 2097972] Created golang-github-emicklei-restful-swagger12 tracking bugs for this issue: Affects: fedora-all [bug 2097973] Created golang-github-tonistiigi-opentelemetry-contrib tracking bugs for this issue: Affects: fedora-all [bug 2097974] Created golang-helm-3 tracking bugs for this issue: Affects: fedora-all [bug 2097975] Created golang-k8s-apiextensions-apiserver tracking bugs for this issue: Affects: fedora-all [bug 2097976] Created golang-k8s-code-generator tracking bugs for this issue: Affects: fedora-all [bug 2097977] Created golang-k8s-kube-openapi tracking bugs for this issue: Affects: fedora-all [bug 2097978] Created golang-k8s-pod-security-admission tracking bugs for this issue: Affects: fedora-all [bug 2097979] Created golang-k8s-sample-apiserver tracking bugs for this issue: Affects: fedora-all [bug 2097980] Created golang-opentelemetry-contrib tracking bugs for this issue: Affects: fedora-all [bug 2097981] Created golang-opentelemetry-contrib-0.20 tracking bugs for this issue: Affects: fedora-all [bug 2097982] Created kompose tracking bugs for this issue: Affects: epel-7 [bug 2097967] Affects: fedora-all [bug 2097983] Created origin tracking bugs for this issue: Affects: fedora-all [bug 2097984]
Created golang-k8s-kube-aggregator tracking bugs for this issue: Affects: fedora-all [bug 2097987]
This issue has been addressed in the following products: Openshift Serverless 1 on RHEL 8 Via RHSA-2022:6042 https://access.redhat.com/errata/RHSA-2022:6042
This issue has been addressed in the following products: Openshift Serveless 1.24 Via RHSA-2022:6040 https://access.redhat.com/errata/RHSA-2022:6040
This issue has been addressed in the following products: RHEL-8-CNV-4.10 Via RHSA-2022:6351 https://access.redhat.com/errata/RHSA-2022:6351
This issue has been addressed in the following products: RHEL-8-CNV-4.9 Via RHSA-2022:8609 https://access.redhat.com/errata/RHSA-2022:8609
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2022-1996
This issue has been addressed in the following products: Cryostat 2 on RHEL 8 Via RHSA-2023:0814 https://access.redhat.com/errata/RHSA-2023:0814
This issue has been addressed in the following products: Red Hat OpenShift GitOps 1.8 Via RHSA-2023:3229 https://access.redhat.com/errata/RHSA-2023:3229
This issue has been addressed in the following products: Red Hat OpenShift GitOps 1.9 Via RHSA-2023:3557 https://access.redhat.com/errata/RHSA-2023:3557