Synopsis
Moderate: containernetworking-plugins security update
Type/Severity
Security Advisory: Moderate
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
View affected systems
Topic
An update for containernetworking-plugins is now available for Red Hat Enterprise Linux 9.
Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Description
The Container Network Interface (CNI) project consists of a specification and libraries for writing plug-ins for configuring network interfaces in Linux containers, along with a number of supported plug-ins. CNI concerns itself only with network connectivity of containers and removing allocated resources when the container is deleted.
Security Fix(es):
- golang: crypto/tls: slow verification of certificate chains containing large RSA keys (CVE-2023-29409)
- golang: html/template: improper handling of HTML-like comments within script contexts (CVE-2023-39318)
- golang: html/template: improper handling of special tags within script contexts (CVE-2023-39319)
- golang: crypto/tls: panic when processing post-handshake message on QUIC connections (CVE-2023-39321)
- golang: crypto/tls: lack of a limit on buffered post-handshake (CVE-2023-39322)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Products
-
Red Hat Enterprise Linux for x86_64 9 x86_64
-
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.4 x86_64
-
Red Hat Enterprise Linux Server - AUS 9.4 x86_64
-
Red Hat Enterprise Linux for IBM z Systems 9 s390x
-
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.4 s390x
-
Red Hat Enterprise Linux for Power, little endian 9 ppc64le
-
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.4 ppc64le
-
Red Hat Enterprise Linux for ARM 64 9 aarch64
-
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.4 aarch64
-
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4 ppc64le
-
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.4 x86_64
-
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.4 aarch64
-
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.4 s390x
Fixes
-
BZ - 2228743
- CVE-2023-29409 golang: crypto/tls: slow verification of certificate chains containing large RSA keys
-
BZ - 2237773
- CVE-2023-39319 golang: html/template: improper handling of special tags within script contexts
-
BZ - 2237776
- CVE-2023-39318 golang: html/template: improper handling of HTML-like comments within script contexts
-
BZ - 2237777
- CVE-2023-39321 golang: crypto/tls: panic when processing post-handshake message on QUIC connections
-
BZ - 2237778
- CVE-2023-39322 golang: crypto/tls: lack of a limit on buffered post-handshake
Note:
More recent versions of these packages may be available.
Click a package name for more details.
Red Hat Enterprise Linux for x86_64 9
SRPM |
containernetworking-plugins-1.3.0-6.el9_3.src.rpm
|
SHA-256: 90c7a2365c45eb7854736f3bd79e95d65ed567162c645596c18369aab8da3ea0 |
x86_64 |
containernetworking-plugins-1.3.0-6.el9_3.x86_64.rpm
|
SHA-256: ec6cf38e60a433a50513d3400b8d9e8665498575a88a1953496fb7de7a4f12d4 |
containernetworking-plugins-debuginfo-1.3.0-6.el9_3.x86_64.rpm
|
SHA-256: 3da94148ce070e866e9d71635356b39e3096e856e7bf35586c480926e4042f97 |
containernetworking-plugins-debugsource-1.3.0-6.el9_3.x86_64.rpm
|
SHA-256: 5eed42cfa82c335dc611371a9d7d182b562d49a2a52805b8cf243fe393385195 |
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.4
SRPM |
containernetworking-plugins-1.3.0-6.el9_3.src.rpm
|
SHA-256: 90c7a2365c45eb7854736f3bd79e95d65ed567162c645596c18369aab8da3ea0 |
x86_64 |
containernetworking-plugins-1.3.0-6.el9_3.x86_64.rpm
|
SHA-256: ec6cf38e60a433a50513d3400b8d9e8665498575a88a1953496fb7de7a4f12d4 |
containernetworking-plugins-debuginfo-1.3.0-6.el9_3.x86_64.rpm
|
SHA-256: 3da94148ce070e866e9d71635356b39e3096e856e7bf35586c480926e4042f97 |
containernetworking-plugins-debugsource-1.3.0-6.el9_3.x86_64.rpm
|
SHA-256: 5eed42cfa82c335dc611371a9d7d182b562d49a2a52805b8cf243fe393385195 |
Red Hat Enterprise Linux Server - AUS 9.4
SRPM |
containernetworking-plugins-1.3.0-6.el9_3.src.rpm
|
SHA-256: 90c7a2365c45eb7854736f3bd79e95d65ed567162c645596c18369aab8da3ea0 |
x86_64 |
containernetworking-plugins-1.3.0-6.el9_3.x86_64.rpm
|
SHA-256: ec6cf38e60a433a50513d3400b8d9e8665498575a88a1953496fb7de7a4f12d4 |
containernetworking-plugins-debuginfo-1.3.0-6.el9_3.x86_64.rpm
|
SHA-256: 3da94148ce070e866e9d71635356b39e3096e856e7bf35586c480926e4042f97 |
containernetworking-plugins-debugsource-1.3.0-6.el9_3.x86_64.rpm
|
SHA-256: 5eed42cfa82c335dc611371a9d7d182b562d49a2a52805b8cf243fe393385195 |
Red Hat Enterprise Linux for IBM z Systems 9
SRPM |
containernetworking-plugins-1.3.0-6.el9_3.src.rpm
|
SHA-256: 90c7a2365c45eb7854736f3bd79e95d65ed567162c645596c18369aab8da3ea0 |
s390x |
containernetworking-plugins-1.3.0-6.el9_3.s390x.rpm
|
SHA-256: 52b75e08ae2dd6dbcfe591089f416ae536505d7c00154384fc097ee52e208ae0 |
containernetworking-plugins-debuginfo-1.3.0-6.el9_3.s390x.rpm
|
SHA-256: 66b013cc0516a8345f0d2060d60bc6e1017ff41d212f091a34eb4acb0791a8e0 |
containernetworking-plugins-debugsource-1.3.0-6.el9_3.s390x.rpm
|
SHA-256: 228d1ff73885da95646944363f8857b0a11e115f9b213f376bcb28b59a3ff93a |
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.4
SRPM |
containernetworking-plugins-1.3.0-6.el9_3.src.rpm
|
SHA-256: 90c7a2365c45eb7854736f3bd79e95d65ed567162c645596c18369aab8da3ea0 |
s390x |
containernetworking-plugins-1.3.0-6.el9_3.s390x.rpm
|
SHA-256: 52b75e08ae2dd6dbcfe591089f416ae536505d7c00154384fc097ee52e208ae0 |
containernetworking-plugins-debuginfo-1.3.0-6.el9_3.s390x.rpm
|
SHA-256: 66b013cc0516a8345f0d2060d60bc6e1017ff41d212f091a34eb4acb0791a8e0 |
containernetworking-plugins-debugsource-1.3.0-6.el9_3.s390x.rpm
|
SHA-256: 228d1ff73885da95646944363f8857b0a11e115f9b213f376bcb28b59a3ff93a |
Red Hat Enterprise Linux for Power, little endian 9
SRPM |
containernetworking-plugins-1.3.0-6.el9_3.src.rpm
|
SHA-256: 90c7a2365c45eb7854736f3bd79e95d65ed567162c645596c18369aab8da3ea0 |
ppc64le |
containernetworking-plugins-1.3.0-6.el9_3.ppc64le.rpm
|
SHA-256: e14c29cc0822304bb395787c563e9c6abe55589d44e7798419e71d9f8c2bbc5b |
containernetworking-plugins-debuginfo-1.3.0-6.el9_3.ppc64le.rpm
|
SHA-256: af047aea5a149745b4d2b41c9b95e50126ae3ab98032162087f4d398d885a67f |
containernetworking-plugins-debugsource-1.3.0-6.el9_3.ppc64le.rpm
|
SHA-256: db0da2b511b569428032f467712260c841de4099d207d9584affc2aef1264ec2 |
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.4
SRPM |
containernetworking-plugins-1.3.0-6.el9_3.src.rpm
|
SHA-256: 90c7a2365c45eb7854736f3bd79e95d65ed567162c645596c18369aab8da3ea0 |
ppc64le |
containernetworking-plugins-1.3.0-6.el9_3.ppc64le.rpm
|
SHA-256: e14c29cc0822304bb395787c563e9c6abe55589d44e7798419e71d9f8c2bbc5b |
containernetworking-plugins-debuginfo-1.3.0-6.el9_3.ppc64le.rpm
|
SHA-256: af047aea5a149745b4d2b41c9b95e50126ae3ab98032162087f4d398d885a67f |
containernetworking-plugins-debugsource-1.3.0-6.el9_3.ppc64le.rpm
|
SHA-256: db0da2b511b569428032f467712260c841de4099d207d9584affc2aef1264ec2 |
Red Hat Enterprise Linux for ARM 64 9
SRPM |
containernetworking-plugins-1.3.0-6.el9_3.src.rpm
|
SHA-256: 90c7a2365c45eb7854736f3bd79e95d65ed567162c645596c18369aab8da3ea0 |
aarch64 |
containernetworking-plugins-1.3.0-6.el9_3.aarch64.rpm
|
SHA-256: 71a05ac053f72ebb887a8634ec89f508343253248d484f06a2cf9addf95a28e2 |
containernetworking-plugins-debuginfo-1.3.0-6.el9_3.aarch64.rpm
|
SHA-256: 9eccf3a51cbed3eb3c96bc739ae9cc098ced6600fe813d0a0a2d282d2d85118a |
containernetworking-plugins-debugsource-1.3.0-6.el9_3.aarch64.rpm
|
SHA-256: 5df75b4445fad7d0c3f27255975e0745967b45287295f73979940de5868e66fb |
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.4
SRPM |
containernetworking-plugins-1.3.0-6.el9_3.src.rpm
|
SHA-256: 90c7a2365c45eb7854736f3bd79e95d65ed567162c645596c18369aab8da3ea0 |
aarch64 |
containernetworking-plugins-1.3.0-6.el9_3.aarch64.rpm
|
SHA-256: 71a05ac053f72ebb887a8634ec89f508343253248d484f06a2cf9addf95a28e2 |
containernetworking-plugins-debuginfo-1.3.0-6.el9_3.aarch64.rpm
|
SHA-256: 9eccf3a51cbed3eb3c96bc739ae9cc098ced6600fe813d0a0a2d282d2d85118a |
containernetworking-plugins-debugsource-1.3.0-6.el9_3.aarch64.rpm
|
SHA-256: 5df75b4445fad7d0c3f27255975e0745967b45287295f73979940de5868e66fb |
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4
SRPM |
containernetworking-plugins-1.3.0-6.el9_3.src.rpm
|
SHA-256: 90c7a2365c45eb7854736f3bd79e95d65ed567162c645596c18369aab8da3ea0 |
ppc64le |
containernetworking-plugins-1.3.0-6.el9_3.ppc64le.rpm
|
SHA-256: e14c29cc0822304bb395787c563e9c6abe55589d44e7798419e71d9f8c2bbc5b |
containernetworking-plugins-debuginfo-1.3.0-6.el9_3.ppc64le.rpm
|
SHA-256: af047aea5a149745b4d2b41c9b95e50126ae3ab98032162087f4d398d885a67f |
containernetworking-plugins-debugsource-1.3.0-6.el9_3.ppc64le.rpm
|
SHA-256: db0da2b511b569428032f467712260c841de4099d207d9584affc2aef1264ec2 |
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.4
SRPM |
containernetworking-plugins-1.3.0-6.el9_3.src.rpm
|
SHA-256: 90c7a2365c45eb7854736f3bd79e95d65ed567162c645596c18369aab8da3ea0 |
x86_64 |
containernetworking-plugins-1.3.0-6.el9_3.x86_64.rpm
|
SHA-256: ec6cf38e60a433a50513d3400b8d9e8665498575a88a1953496fb7de7a4f12d4 |
containernetworking-plugins-debuginfo-1.3.0-6.el9_3.x86_64.rpm
|
SHA-256: 3da94148ce070e866e9d71635356b39e3096e856e7bf35586c480926e4042f97 |
containernetworking-plugins-debugsource-1.3.0-6.el9_3.x86_64.rpm
|
SHA-256: 5eed42cfa82c335dc611371a9d7d182b562d49a2a52805b8cf243fe393385195 |
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.4
SRPM |
containernetworking-plugins-1.3.0-6.el9_3.src.rpm
|
SHA-256: 90c7a2365c45eb7854736f3bd79e95d65ed567162c645596c18369aab8da3ea0 |
aarch64 |
containernetworking-plugins-1.3.0-6.el9_3.aarch64.rpm
|
SHA-256: 71a05ac053f72ebb887a8634ec89f508343253248d484f06a2cf9addf95a28e2 |
containernetworking-plugins-debuginfo-1.3.0-6.el9_3.aarch64.rpm
|
SHA-256: 9eccf3a51cbed3eb3c96bc739ae9cc098ced6600fe813d0a0a2d282d2d85118a |
containernetworking-plugins-debugsource-1.3.0-6.el9_3.aarch64.rpm
|
SHA-256: 5df75b4445fad7d0c3f27255975e0745967b45287295f73979940de5868e66fb |
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.4
SRPM |
containernetworking-plugins-1.3.0-6.el9_3.src.rpm
|
SHA-256: 90c7a2365c45eb7854736f3bd79e95d65ed567162c645596c18369aab8da3ea0 |
s390x |
containernetworking-plugins-1.3.0-6.el9_3.s390x.rpm
|
SHA-256: 52b75e08ae2dd6dbcfe591089f416ae536505d7c00154384fc097ee52e208ae0 |
containernetworking-plugins-debuginfo-1.3.0-6.el9_3.s390x.rpm
|
SHA-256: 66b013cc0516a8345f0d2060d60bc6e1017ff41d212f091a34eb4acb0791a8e0 |
containernetworking-plugins-debugsource-1.3.0-6.el9_3.s390x.rpm
|
SHA-256: 228d1ff73885da95646944363f8857b0a11e115f9b213f376bcb28b59a3ff93a |