- Issued:
- 2021-03-22
- Updated:
- 2021-03-22
RHSA-2021:0949 - Low: Red Hat OpenShift Do openshift/odo-init-image 1.1.3 security update
Synopsis
Low: Red Hat OpenShift Do openshift/odo-init-image 1.1.3 security update
Type/Severity
Security Advisory Low
Topic
Updated openshift/odo-init-image container image is now available for Red Hat Openshift Do 1.0.
Description
Red Hat OpenShift Do (odo) is a simple CLI tool for developers to create, build, and deploy applications on OpenShift. The odo tool is completely client-based and requires no server within the OpenShift cluster for deployment. It detects changes to local code and deploys it to the cluster automatically, giving instant feedback to validate changes in real-time. It supports multiple programming languages and frameworks.
Red Hat OpenShift Do openshift/odo-init-image 1.1.3 is a container image that is used as part of the InitContainer setup that provisions odo components.
The advisory addresses the following issues:
- Re-release of odo-init-image 1.1.3 for security updates
Solution
Download and install a new CLI binary by following the instructions linked from the References section.
Affected Products
| Product | Version | Arch |
|---|---|---|
| Red Hat odo for OpenShift Container Platform | 1 | x86_64 |
Fixes
CVEs
- CVE-2018-20843
- CVE-2019-5094
- CVE-2019-5188
- CVE-2019-5482
- CVE-2019-11719
- CVE-2019-11727
- CVE-2019-11756
- CVE-2019-12450
- CVE-2019-12749
- CVE-2019-14822
- CVE-2019-14866
- CVE-2019-15903
- CVE-2019-16935
- CVE-2019-17006
- CVE-2019-17023
- CVE-2019-17498
- CVE-2019-19126
- CVE-2019-19956
- CVE-2019-20386
- CVE-2019-20388
- CVE-2019-20907
- CVE-2019-25013
- CVE-2020-1971
- CVE-2020-6829
- CVE-2020-7595
- CVE-2020-8177
- CVE-2020-10029
- CVE-2020-12243
- CVE-2020-12400
- CVE-2020-12401
- CVE-2020-12402
- CVE-2020-12403
- CVE-2020-29573
References
- https://access.redhat.com/security/updates/classification/#low
- https://docs.openshift.com/container-platform/4.4/cli_reference/openshift_developer_cli/installing-odo.html
Additional information
- The Red Hat security contact is This content is not included.secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.
- Offline Security Data data is available for integration with other systems. See Offline Security Data API to get started.