Issued:
2025-05-14
Updated:
2025-05-14

RHSA-2025:7451 - Important: Logging for Red Hat OpenShift - 5.8.20


Synopsis

Important: Logging for Red Hat OpenShift - 5.8.20

Type/Severity

Security Advisory Important

Topic

Logging for Red Hat OpenShift - 5.8.20

Description

Logging for Red Hat OpenShift - 5.8.20 logging-loki-container: Non-linear parsing of case-insensitive content in golang.org/x/net/html (CVE-2024-45338)

Solution

For OpenShift Container Platform 4.13 see the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this errata update:

https://docs.redhat.com/en/documentation/openshift_container_platform/4.13/html/release_notes/ocp-4-13-release-notes

For Red Hat OpenShift Logging 5.8, see the following instructions to apply this update:

https://docs.redhat.com/en/documentation/openshift_container_platform/4.13/html/logging/cluster-logging-upgrading

Affected Products

ProductVersionArch
Logging Subsystem for Red Hat OpenShift5x86_64
Logging Subsystem for Red Hat OpenShift for IBM Z and LinuxONE5s390x
Logging Subsystem for Red Hat OpenShift for IBM Power, little endian5ppc64le
Logging Subsystem for Red Hat OpenShift for ARM 645aarch64

Fixes

CVEs

References


Additional information