RHSA-2025:16160HighCVSS 8.2
Red Hat Security Advisory: OpenShift Container Platform 4.15.58 bug fix and security update
🔗 CVE IDs covered (3)
📋 Description
CVE-2024-45337 — golang.org/x/crypto/ssh: Misuse of ServerConfig.PublicKeyCallback may cause authorization bypass in golang.org/x/crypto CVE-2024-45339 — github.com/golang/glog: Vulnerability when creating log files in github.com/golang/glog CVE-2025-22869 — golang.org/x/crypto/ssh: Denial of Service in the Key Exchange of golang.org/x/crypto/ssh
🔗 References (6)
- selfhttps://access.redhat.com/errata/RHSA-2025:16160
- externalhttps://access.redhat.com/security/cve/CVE-2024-45337
- externalhttps://access.redhat.com/security/cve/CVE-2024-45339
- externalhttps://access.redhat.com/security/cve/CVE-2025-22869
- externalhttps://access.redhat.com/security/updates/classification/
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_16160.json