RHSA-2025:9136MediumCVSS 7.5
Red Hat Security Advisory: Red Hat OpenShift for Windows Containers 10.16.2 product release
🔗 CVE IDs covered (3)
📋 Description
CVE-2024-9042 — kubelet: Command Injection affecting Windows nodes via nodes/*/logs/query API CVE-2024-45338 — golang.org/x/net/html: Non-linear parsing of case-insensitive content in golang.org/x/net/html CVE-2025-22869 — golang.org/x/crypto/ssh: Denial of Service in the Key Exchange of golang.org/x/crypto/ssh
🔗 References (5)
- selfhttps://access.redhat.com/errata/RHSA-2025:9136
- externalhttps://access.redhat.com/security/cve/CVE-2024-9042
- externalhttps://access.redhat.com/security/updates/classification/
- externalhttps://docs.openshift.com/container-platform/4.16/windows_containers/index.html
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_9136.json