RHSA-2025:17731HighCVSS 7.5
Red Hat Security Advisory: Red Hat OpenShift GitOps v1.17.2 security update
🔗 CVE IDs covered (6)
📋 Description
CVE-2025-22874 — crypto/x509: Usage of ExtKeyUsageAny disables policy validation in crypto/x509 CVE-2025-47907 — database/sql: Postgres Scan Race Condition CVE-2025-55191 — github.com/argoproj/argo-cd/v2: github.com/argoproj/argo-cd/v3: Argo CD race condition leading to crash CVE-2025-59531 — argocd: argocd-server: gitops: Unauthenticated argocd-server panic via a malicious Bitbucket-Server webhook payload CVE-2025-59537 — github.com/argoproj/argo-cd: Argo CD unauthenticated Denial of Service CVE-2025-59538 — github.com/argoproj/argo-cd: Argo CD unauthenticated Remote Denial of Service
🔗 References (10)
- selfhttps://access.redhat.com/errata/RHSA-2025:17731
- externalhttps://access.redhat.com/security/cve/CVE-2025-22874
- externalhttps://access.redhat.com/security/cve/CVE-2025-47907
- externalhttps://access.redhat.com/security/cve/CVE-2025-59531
- externalhttps://access.redhat.com/security/cve/CVE-2025-59537
- externalhttps://access.redhat.com/security/cve/CVE-2025-59538
- externalhttps://access.redhat.com/security/cve/CVE-2025-55191
- externalhttps://access.redhat.com/security/updates/classification/
- externalhttps://docs.redhat.com/en/documentation/red_hat_openshift_gitops/1.17/
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_17731.json