Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2021:3769 - Security Advisory
Issued:
2021-10-12
Updated:
2021-10-12

RHSA-2021:3769 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: grafana security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for grafana is now available for Red Hat Enterprise Linux 8.1 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB & OpenTSDB.

Security Fix(es):

  • grafana: Snapshot authentication bypass (CVE-2021-39226)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.1 x86_64
  • Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 8.1 s390x
  • Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.1 ppc64le
  • Red Hat Enterprise Linux for ARM 64 - Extended Update Support 8.1 aarch64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.1 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.1 x86_64

Fixes

  • BZ - 2011063 - CVE-2021-39226 grafana: Snapshot authentication bypass

CVEs

  • CVE-2021-39226

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Extended Update Support 8.1

SRPM
grafana-6.2.2-7.el8_1.src.rpm SHA-256: 8b4e97dec790dd4be8e08a13c47bb5db733afbc31dda667ff7f373b972512bf8
x86_64
grafana-6.2.2-7.el8_1.x86_64.rpm SHA-256: 1857b274f9cda2b1560bfcc395a3ee3c5d978cbcf256033e6d3cb34b89ce968a
grafana-azure-monitor-6.2.2-7.el8_1.x86_64.rpm SHA-256: 4ff89c88b302135c8a0d5519161b81c156eef4322d77db53d91bafd746566ceb
grafana-cloudwatch-6.2.2-7.el8_1.x86_64.rpm SHA-256: cbfe4f8eaec4b387d831a3443f7a664396e6261bff5728696699c220e86c63b2
grafana-debuginfo-6.2.2-7.el8_1.x86_64.rpm SHA-256: f1dcf2bdae7ac4612c7b458d1ea5f5a0b0c9c22193008b43f7b8240103d2a3ca
grafana-elasticsearch-6.2.2-7.el8_1.x86_64.rpm SHA-256: 84d729c9ec93022a9b062c52f370c2a9633e32b089aac1f3a6b7439e7914163f
grafana-graphite-6.2.2-7.el8_1.x86_64.rpm SHA-256: 2d6ca51f75bcd8bd60ba1b76e5e003f1d7af7889ec0f4b2091de1e160f82ee01
grafana-influxdb-6.2.2-7.el8_1.x86_64.rpm SHA-256: e2f5328da53c061f88d07a99655c8bbc88db1de8a7ee47334bdb624da2aae99a
grafana-loki-6.2.2-7.el8_1.x86_64.rpm SHA-256: 9b025b13a186afad65a72d86994191334245fcaac771f542fe74784c549dc574
grafana-mssql-6.2.2-7.el8_1.x86_64.rpm SHA-256: cdd126d06d31d1c12ad6dcc02b89f5c6e9ee86c91b2ebaba7340e77cb65d0780
grafana-mysql-6.2.2-7.el8_1.x86_64.rpm SHA-256: f19896ffb3aabd4a3d7fae6f711573f68a33ddce3d893b250b859457de6f65eb
grafana-opentsdb-6.2.2-7.el8_1.x86_64.rpm SHA-256: f2877a5b59b0dbb09b3a705fb14c4da6d40d454f50e2c546dc66ea490e3ab872
grafana-postgres-6.2.2-7.el8_1.x86_64.rpm SHA-256: d5ed11da58ab8e9c7873cccaa80e869b9b88e4e2f7fde7d6f22acc73ff2dc917
grafana-prometheus-6.2.2-7.el8_1.x86_64.rpm SHA-256: 1d59c27d1f9298840bce524266dae800d8dcb90dd632f3cda94537d1f99ccf06
grafana-stackdriver-6.2.2-7.el8_1.x86_64.rpm SHA-256: a7d053cba1baa57149c5312af60302126d1076c0e24457d6aa8356fa40f8d041

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 8.1

SRPM
grafana-6.2.2-7.el8_1.src.rpm SHA-256: 8b4e97dec790dd4be8e08a13c47bb5db733afbc31dda667ff7f373b972512bf8
s390x
grafana-6.2.2-7.el8_1.s390x.rpm SHA-256: e3b5dc3c0164c4960278a6a1b98dc70a5f28daa4ba9072c539d5bc24557db982
grafana-azure-monitor-6.2.2-7.el8_1.s390x.rpm SHA-256: 2f60a28fd60d1a72d84be64974fafdd7fc81e962166a13abaef08fbd32c75ccb
grafana-cloudwatch-6.2.2-7.el8_1.s390x.rpm SHA-256: 8f882118855d25c257b78dcad16a1b24d986a2604067af92aff2ecedc476e0ac
grafana-debuginfo-6.2.2-7.el8_1.s390x.rpm SHA-256: a730cded347d5e63415b0c479cca31f8ea42a46a89f587da0ff04f17736f9c3e
grafana-elasticsearch-6.2.2-7.el8_1.s390x.rpm SHA-256: c3ac954bb337d73c9bbe92bbd39469f6da94e2e6ee1d0ec4905afd6606a7541c
grafana-graphite-6.2.2-7.el8_1.s390x.rpm SHA-256: c63224ad0c1f448225fdf2743a6da71571f52c43b33bca70496a429aaf51330f
grafana-influxdb-6.2.2-7.el8_1.s390x.rpm SHA-256: 566c992ee9fd80dc967ffb45bd7814d32141272f5dcfb42a08351b108e1f673f
grafana-loki-6.2.2-7.el8_1.s390x.rpm SHA-256: 8bd4ce3710aa55ac4730fd035488059d57dc266bf859cc89988f90b3a6e9d734
grafana-mssql-6.2.2-7.el8_1.s390x.rpm SHA-256: e244c3323e2415cdce9ef436da0a36a4a3f96ee9e18cbac94d7db81a4d0604c4
grafana-mysql-6.2.2-7.el8_1.s390x.rpm SHA-256: ed0c1448d777500ca32a5e979a9e0ce0e70f2ea00bd7653dc6cfea05f6481d5a
grafana-opentsdb-6.2.2-7.el8_1.s390x.rpm SHA-256: fea1a6396974456fef5092b4cb889d837594e6329de7032cafd5027b3007e549
grafana-postgres-6.2.2-7.el8_1.s390x.rpm SHA-256: 32c7a9ba998221c89fbe36d8ecda6512b29df5516573254718e6d9fa996c0610
grafana-prometheus-6.2.2-7.el8_1.s390x.rpm SHA-256: 6d75f30e394d6a37ee917c34b5e3e7d8644403770a150e84d057a66aaf5b8fba
grafana-stackdriver-6.2.2-7.el8_1.s390x.rpm SHA-256: e52ebda601494f1f7be6ea5edf9bcfaf803f95de5703ad0838c5f875574830d2

Red Hat Enterprise Linux for Power, little endian - Extended Update Support 8.1

SRPM
grafana-6.2.2-7.el8_1.src.rpm SHA-256: 8b4e97dec790dd4be8e08a13c47bb5db733afbc31dda667ff7f373b972512bf8
ppc64le
grafana-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 12768770b2722687f8e68653092ef73a875c801e71ffa6ec437935a049e9ef15
grafana-azure-monitor-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 7a1f877dcae548e9d4cde6448557ab69b7018d486756cd491921324d17134d12
grafana-cloudwatch-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 2e2447356902e1e5e9db5ba7f384fd02c0fe47f73794415e1b924aff07bc3d22
grafana-debuginfo-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 00eeed1305e060b2d02c2aac9243cd05c27ba7121154835bc5b42bfca8e77967
grafana-elasticsearch-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 40529fbc8420423e283d2edfda4ee49e11f93946506f48d98d211165b3a324e3
grafana-graphite-6.2.2-7.el8_1.ppc64le.rpm SHA-256: acc40cebbdc80d6b01ca627d554b34a9f2705da837b7f14ae93459732c93789f
grafana-influxdb-6.2.2-7.el8_1.ppc64le.rpm SHA-256: d93f631fc171b18a034c5c13fa3565107803b8047dd93c807650fd5153c4ef1c
grafana-loki-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 1c0da7ea636b13b650fa9a84b822cb457e2136bd1203ad6bfaca2e804c289c04
grafana-mssql-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 50fa49fbd801406b56345bef877e1e7d025841265e4bb6a04e078e33f962d265
grafana-mysql-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 6fa70374de9b3fd168e13ab882781899ded76996574c31217d52858daf9270ae
grafana-opentsdb-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 56fd3225fa6ea3893aa6c7358934de77c80a974f4d5b8f210cb2859d980318ef
grafana-postgres-6.2.2-7.el8_1.ppc64le.rpm SHA-256: ebed78fe072ca4a87bdbf3d2711bc0a266d1825c9ddd777ccf9579c1ad712944
grafana-prometheus-6.2.2-7.el8_1.ppc64le.rpm SHA-256: eca9b934afaf488a41724c7a3422e4f994bc2941a206117381d26a3add468d65
grafana-stackdriver-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 7070dc6639949461cbf8f68c3561971a5148f71dc78554aed384a7bed736f27b

Red Hat Enterprise Linux for ARM 64 - Extended Update Support 8.1

SRPM
grafana-6.2.2-7.el8_1.src.rpm SHA-256: 8b4e97dec790dd4be8e08a13c47bb5db733afbc31dda667ff7f373b972512bf8
aarch64
grafana-6.2.2-7.el8_1.aarch64.rpm SHA-256: bf127d0b61a828104d67a986b0759705ccf5fce771b31aafde1de6e37da6df23
grafana-azure-monitor-6.2.2-7.el8_1.aarch64.rpm SHA-256: 40d805a7e90372cd20a2f8f3715730f37e1c59b248a30e6bf62f1df4cafced25
grafana-cloudwatch-6.2.2-7.el8_1.aarch64.rpm SHA-256: 3b9d74175f166206498f24f1f7ebd2466733e7accb00d2563a8fdf6015f069f8
grafana-debuginfo-6.2.2-7.el8_1.aarch64.rpm SHA-256: 2f6883b7c437ccce540e8459e3659e3525556cf617ac15d5b4cd6b965f269e45
grafana-elasticsearch-6.2.2-7.el8_1.aarch64.rpm SHA-256: c6ec0c36858a94373713398213fd3ecb84203b12afb560e631b591be84dbde84
grafana-graphite-6.2.2-7.el8_1.aarch64.rpm SHA-256: f015952b1fe967dffe92eac3895d6c227a8577be94c5cbeac2697f2ba989b53a
grafana-influxdb-6.2.2-7.el8_1.aarch64.rpm SHA-256: 6e967f3fbbba52887a657841087b4996016d387e9387f3f523bd40f14c459e4b
grafana-loki-6.2.2-7.el8_1.aarch64.rpm SHA-256: 8e5b995dd366e19e8d00c0dd0f1d0ff834ac49515fac238256931a3538de83c7
grafana-mssql-6.2.2-7.el8_1.aarch64.rpm SHA-256: 7c97d1209812d4ee4c04032c1eb0af7d22e19a0ba987701654950a52d4fa1b9c
grafana-mysql-6.2.2-7.el8_1.aarch64.rpm SHA-256: c18148207b5a87a08029913accf65a86806a3e8d3275e08ba321920f7e01822e
grafana-opentsdb-6.2.2-7.el8_1.aarch64.rpm SHA-256: 243945a7ba4eb9807fb8d7aef7b08336091189c507bf64dafc226ee8c0e410de
grafana-postgres-6.2.2-7.el8_1.aarch64.rpm SHA-256: 9b43744e67c28cce04089d2404b6b9f5217af8700b9b26735356e517921c8c53
grafana-prometheus-6.2.2-7.el8_1.aarch64.rpm SHA-256: f84310af30ecfc89403fcc7550b2094f3a845da0778ea7a3f496fcd4636a9642
grafana-stackdriver-6.2.2-7.el8_1.aarch64.rpm SHA-256: 5de4d3d4b55da4f2b9bdc82327c6bf73441b3374d1577ff2aaadf2f0bf787608

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.1

SRPM
grafana-6.2.2-7.el8_1.src.rpm SHA-256: 8b4e97dec790dd4be8e08a13c47bb5db733afbc31dda667ff7f373b972512bf8
ppc64le
grafana-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 12768770b2722687f8e68653092ef73a875c801e71ffa6ec437935a049e9ef15
grafana-azure-monitor-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 7a1f877dcae548e9d4cde6448557ab69b7018d486756cd491921324d17134d12
grafana-cloudwatch-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 2e2447356902e1e5e9db5ba7f384fd02c0fe47f73794415e1b924aff07bc3d22
grafana-debuginfo-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 00eeed1305e060b2d02c2aac9243cd05c27ba7121154835bc5b42bfca8e77967
grafana-elasticsearch-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 40529fbc8420423e283d2edfda4ee49e11f93946506f48d98d211165b3a324e3
grafana-graphite-6.2.2-7.el8_1.ppc64le.rpm SHA-256: acc40cebbdc80d6b01ca627d554b34a9f2705da837b7f14ae93459732c93789f
grafana-influxdb-6.2.2-7.el8_1.ppc64le.rpm SHA-256: d93f631fc171b18a034c5c13fa3565107803b8047dd93c807650fd5153c4ef1c
grafana-loki-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 1c0da7ea636b13b650fa9a84b822cb457e2136bd1203ad6bfaca2e804c289c04
grafana-mssql-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 50fa49fbd801406b56345bef877e1e7d025841265e4bb6a04e078e33f962d265
grafana-mysql-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 6fa70374de9b3fd168e13ab882781899ded76996574c31217d52858daf9270ae
grafana-opentsdb-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 56fd3225fa6ea3893aa6c7358934de77c80a974f4d5b8f210cb2859d980318ef
grafana-postgres-6.2.2-7.el8_1.ppc64le.rpm SHA-256: ebed78fe072ca4a87bdbf3d2711bc0a266d1825c9ddd777ccf9579c1ad712944
grafana-prometheus-6.2.2-7.el8_1.ppc64le.rpm SHA-256: eca9b934afaf488a41724c7a3422e4f994bc2941a206117381d26a3add468d65
grafana-stackdriver-6.2.2-7.el8_1.ppc64le.rpm SHA-256: 7070dc6639949461cbf8f68c3561971a5148f71dc78554aed384a7bed736f27b

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.1

SRPM
grafana-6.2.2-7.el8_1.src.rpm SHA-256: 8b4e97dec790dd4be8e08a13c47bb5db733afbc31dda667ff7f373b972512bf8
x86_64
grafana-6.2.2-7.el8_1.x86_64.rpm SHA-256: 1857b274f9cda2b1560bfcc395a3ee3c5d978cbcf256033e6d3cb34b89ce968a
grafana-azure-monitor-6.2.2-7.el8_1.x86_64.rpm SHA-256: 4ff89c88b302135c8a0d5519161b81c156eef4322d77db53d91bafd746566ceb
grafana-cloudwatch-6.2.2-7.el8_1.x86_64.rpm SHA-256: cbfe4f8eaec4b387d831a3443f7a664396e6261bff5728696699c220e86c63b2
grafana-debuginfo-6.2.2-7.el8_1.x86_64.rpm SHA-256: f1dcf2bdae7ac4612c7b458d1ea5f5a0b0c9c22193008b43f7b8240103d2a3ca
grafana-elasticsearch-6.2.2-7.el8_1.x86_64.rpm SHA-256: 84d729c9ec93022a9b062c52f370c2a9633e32b089aac1f3a6b7439e7914163f
grafana-graphite-6.2.2-7.el8_1.x86_64.rpm SHA-256: 2d6ca51f75bcd8bd60ba1b76e5e003f1d7af7889ec0f4b2091de1e160f82ee01
grafana-influxdb-6.2.2-7.el8_1.x86_64.rpm SHA-256: e2f5328da53c061f88d07a99655c8bbc88db1de8a7ee47334bdb624da2aae99a
grafana-loki-6.2.2-7.el8_1.x86_64.rpm SHA-256: 9b025b13a186afad65a72d86994191334245fcaac771f542fe74784c549dc574
grafana-mssql-6.2.2-7.el8_1.x86_64.rpm SHA-256: cdd126d06d31d1c12ad6dcc02b89f5c6e9ee86c91b2ebaba7340e77cb65d0780
grafana-mysql-6.2.2-7.el8_1.x86_64.rpm SHA-256: f19896ffb3aabd4a3d7fae6f711573f68a33ddce3d893b250b859457de6f65eb
grafana-opentsdb-6.2.2-7.el8_1.x86_64.rpm SHA-256: f2877a5b59b0dbb09b3a705fb14c4da6d40d454f50e2c546dc66ea490e3ab872
grafana-postgres-6.2.2-7.el8_1.x86_64.rpm SHA-256: d5ed11da58ab8e9c7873cccaa80e869b9b88e4e2f7fde7d6f22acc73ff2dc917
grafana-prometheus-6.2.2-7.el8_1.x86_64.rpm SHA-256: 1d59c27d1f9298840bce524266dae800d8dcb90dd632f3cda94537d1f99ccf06
grafana-stackdriver-6.2.2-7.el8_1.x86_64.rpm SHA-256: a7d053cba1baa57149c5312af60302126d1076c0e24457d6aa8356fa40f8d041

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility