RHSA-2025:8704HighCVSS 7.5
Red Hat Security Advisory: Red Hat OpenShift for Windows Containers 10.17.1 product release
🔗 CVE IDs covered (2)
📋 Description
CVE-2024-9042 — kubelet: Command Injection affecting Windows nodes via nodes/*/logs/query API CVE-2025-22869 — golang.org/x/crypto/ssh: Denial of Service in the Key Exchange of golang.org/x/crypto/ssh
🔗 References (6)
- selfhttps://access.redhat.com/errata/RHSA-2025:8704
- externalhttps://access.redhat.com/security/cve/CVE-2024-9042
- externalhttps://access.redhat.com/security/cve/CVE-2025-22869
- externalhttps://access.redhat.com/security/updates/classification/
- externalhttps://docs.openshift.com/container-platform/4.17/windows_containers/index.html
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_8704.json