RHSA-2022:6393HighCVSS 7.5
Red Hat Security Advisory: RHV Manager (ovirt-engine) [ovirt-4.5.2] bug fix and security update
🔗 CVE IDs covered (6)
📋 Description
CVE-2020-11022 — jquery: Cross-site scripting due to improper injQuery.htmlPrefilter method CVE-2020-11023 — jquery: Untrusted code execution via tag in HTML passed to DOM manipulation methods CVE-2021-22096 — springframework: malicious input leads to insertion of additional log entries CVE-2021-23358 — nodejs-underscore: Arbitrary code execution via the template function CVE-2022-2806 — ovirt-log-collector: RHVM admin password is logged unfiltered CVE-2022-31129 — moment: inefficient parsing algorithm resulting in DoS
🔗 References (25)
- selfhttps://access.redhat.com/errata/RHSA-2022:6393
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1828406
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1850004
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1939284
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1944286
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1955388
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1974974
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2034584
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2080005
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2092478
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2094577
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2097536
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2097558
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2097560
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2097725
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2104115
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2104831
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2104939
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2105075
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2107250
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2107267
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2108985
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2109923
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_6393.json