- Issued:
- 2024-02-15
- Updated:
- 2024-02-15
RHSA-2024:0843 - Security Advisory
Synopsis
Critical: Release of OpenShift Serverless 1.31.1
Type/Severity
Security Advisory: Critical
Topic
Red Hat OpenShift Serverless version 1.31.1 is now available.
Red Hat Product Security has rated this update as having a security impact of
Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE
link(s) in the References section.
Description
Version 1.31.1 of the OpenShift Serverless Operator is supported on Red Hat
OpenShift Container Platform versions 4.11, 4.12, 4.13 and 4.14
This release includes security, bug fixes, and enhancements.
Security Fix(es):
- go-git: Maliciously crafted Git server replies can cause DoS on go-git clients (CVE-2023-49568)
- go-git: Maliciously crafted Git server replies can lead to path traversal and RCE on go-git clients (CVE-2023-49569)
- golang: net/http/internal: Denial of Service (DoS) via Resource Consumption via HTTP requests (CVE-2023-39326)
- ssh: Prefix truncation attack on Binary Packet Protocol (BPP) (CVE-2023-48795)
- logback: A serialization vulnerability in logback receiver (CVE-2023-6481)
For more details about the security issues, including the impact, a CVSS score, acknowledgements, and other related information, refer to the CVE pages listed in the References section.
Solution
See the Red Hat OpenShift serverless 1.31 documentation at:
https://access.redhat.com/documentation/en-us/red_hat_openshift_serverless/1.31
Affected Products
- Red Hat Openshift Serverless 1 for RHEL 8 x86_64
- Red Hat OpenShift Serverless for IBM Power, little endian 1 for RHEL 8 ppc64le
- Red Hat OpenShift Serverless for IBM Z and LinuxONE 1 for RHEL 8 s390x
Fixes
- BZ - 2252956 - CVE-2023-6481 logback: A serialization vulnerability in logback receiver
- BZ - 2253330 - CVE-2023-39326 golang: net/http/internal: Denial of Service (DoS) via Resource Consumption via HTTP requests
- BZ - 2254210 - CVE-2023-48795 ssh: Prefix truncation attack on Binary Packet Protocol (BPP)
- BZ - 2258143 - CVE-2023-49569 go-git: Maliciously crafted Git server replies can lead to path traversal and RCE on go-git clients
- BZ - 2258165 - CVE-2023-49568 go-git: Maliciously crafted Git server replies can cause DoS on go-git clients
CVEs
- CVE-2021-3468
- CVE-2023-3446
- CVE-2023-3817
- CVE-2023-5388
- CVE-2023-5678
- CVE-2023-5981
- CVE-2023-6481
- CVE-2023-7104
- CVE-2023-27043
- CVE-2023-38469
- CVE-2023-38470
- CVE-2023-38471
- CVE-2023-38472
- CVE-2023-38473
- CVE-2023-39326
- CVE-2023-39615
- CVE-2023-48795
- CVE-2023-49568
- CVE-2023-49569
- CVE-2024-0553
- CVE-2024-20918
- CVE-2024-20919
- CVE-2024-20921
- CVE-2024-20926
- CVE-2024-20932
- CVE-2024-20945
- CVE-2024-20952
aarch64
| openshift-serverless-1-tech-preview/logic-swf-builder-rhel8@sha256:302189cc2ee74a14847380fb5f71187b0ff8299eddd2eb90fbe113f66238e68b |
| openshift-serverless-1-tech-preview/logic-swf-devmode-rhel8@sha256:55fc8d4388975c8df0ccd0b45eeef99bb65a3cc7fb5ba746ff07dbfb16e7404a |
ppc64le
| openshift-serverless-1-tech-preview/eventing-istio-controller-rhel8@sha256:e9e451554be91d262572c5bb551a86989f8e300d944b85c1ecc9b3ea557bbf05 |
| openshift-serverless-1/eventing-istio-controller-rhel8@sha256:e9e451554be91d262572c5bb551a86989f8e300d944b85c1ecc9b3ea557bbf05 |
| openshift-serverless-1-tech-preview/knative-client-plugin-event-sender-rhel8@sha256:ffaaf64421c78a1b3f0bbd5d75435c156b9b09e3ac5614803c7c81ca7b2645ef |
| openshift-serverless-1-tech-preview/logic-swf-builder-rhel8@sha256:136cd272c25b4a385a308911e9c1e53606586d7f18e67b7daa87f0e3eef142b9 |
| openshift-serverless-1-tech-preview/logic-swf-devmode-rhel8@sha256:0346b382d744d5a99092406a2639431e63d0cdbfe7674ad7beaa8e68cc5e7fc5 |
| openshift-serverless-1/client-kn-rhel8@sha256:700e95455c0c2514a4326ea2c1a597a58e4bbf67b656ecd2760e691df30380ad |
| openshift-serverless-1/eventing-apiserver-receive-adapter-rhel8@sha256:e4fd565bc1e8bffbaa1bc16e62e56b0a66cab2065d2df49f4bd9b3c3154b4dc0 |
| openshift-serverless-1/eventing-controller-rhel8@sha256:659ad27b6570fc8c5666f9fa5ad2a3c47e683c68417a3bd487190af707788844 |
| openshift-serverless-1/eventing-in-memory-channel-controller-rhel8@sha256:a002f3f229057b531e1350fef0101fff51057109d6af9440bcef43e6dfaa2bf5 |
| openshift-serverless-1/eventing-in-memory-channel-dispatcher-rhel8@sha256:42f051ed5e6e3f0e27ea1a448824d3190e1ab4205a814ff5c1918ca645119e47 |
| openshift-serverless-1/eventing-kafka-broker-controller-rhel8@sha256:d2f21f5dde48a8b82519ff20d0481bcef01a206879afa6efacfa3808723a7f1c |
| openshift-serverless-1/eventing-kafka-broker-dispatcher-rhel8@sha256:c3d9050330b90591db2575d97eda2065236247b618a9480558d00ecd54eca23d |
| openshift-serverless-1/eventing-kafka-broker-post-install-rhel8@sha256:846057e9be6db0d17ab4322db949f8944d7efbdcd1185a58bfbb43f401f8de40 |
| openshift-serverless-1/eventing-kafka-broker-receiver-rhel8@sha256:c938f1c875b50eae3e00d820d9da4b3f799dd82a26f1a56e665c1744e8b468f4 |
| openshift-serverless-1/eventing-kafka-broker-webhook-rhel8@sha256:c12f4acf50470ad674931589eefa95a9d17611b2aa8150e9d9739284383c5d06 |
| openshift-serverless-1/eventing-mtbroker-filter-rhel8@sha256:a8244530c457577c8c133ef50b6e390e1765d3e7f8c17947913ddfc5d508037e |
| openshift-serverless-1/eventing-mtbroker-ingress-rhel8@sha256:da96cf639e175a6e1a833ed5efc869848e406e1d2b5c23f51e9f893c22b8bf6f |
| openshift-serverless-1/eventing-mtchannel-broker-rhel8@sha256:a183b1a161f779541d91050febd77b21bbff573187118da8809989fc7cafb119 |
| openshift-serverless-1/eventing-mtping-rhel8@sha256:a9749dd06f6cfa11ec4c7ac406c3ed39530733e40bf69b482b563ca7b57dcbdc |
| openshift-serverless-1/eventing-storage-version-migration-rhel8@sha256:70476c2c252928d19d99de809ceec289ec552fed0d4102103874d8535c09acab |
| openshift-serverless-1/eventing-webhook-rhel8@sha256:913fb2c16d9d043c676c36f1963bc076f2ed3d7b5b0236f0784fbc07ce931cd3 |
| openshift-serverless-1/func-utils-rhel8@sha256:4b3189a80899e295c7caea837eef5d1f8d9f5189fd2791e650ebf36745f19021 |
| openshift-serverless-1/ingress-rhel8-operator@sha256:cf91a1ddc98dac23b4aa799a4406299165b379b0daa123decea34b5100728468 |
| openshift-serverless-1/kn-cli-artifacts-rhel8@sha256:3c50e6e72081ccc491b77450d06f38c37263e42dd5c26e88f27813c1b7874643 |
| openshift-serverless-1/knative-rhel8-operator@sha256:b24c65f32f4d2dae35911820e7695c87e2b9f1f90c9245a2976f5830c3d03543 |
| openshift-serverless-1/kourier-control-rhel8@sha256:b11021693f69fde1ec53a4782f661382174ccc78b0f4753ed12068730b28b6e8 |
| openshift-serverless-1/net-istio-controller-rhel8@sha256:6f1738fe3b8d6d5c8eb1dfec0d0cdfff2cadea931404bd9db7d1a0df6c958153 |
| openshift-serverless-1/net-istio-webhook-rhel8@sha256:bc8e20d97530b097b88dab97e8d81c6070237528b971d6d88b1aab5d501ecb7b |
| openshift-serverless-1/serverless-rhel8-operator@sha256:0cc3730d6bf5c921f22509fec73853cf1bdbe216fb8bf8ce248a87eb2ad54a54 |
| openshift-serverless-1/serving-activator-rhel8@sha256:689aaf6f75f9fb434dfddf7f2911954839849b87d2c2a0e4b0e056efc7a5f83c |
| openshift-serverless-1/serving-autoscaler-hpa-rhel8@sha256:1251f3c3ef7b085282deb3348c1c40ed222df91208b6b8750ee93b4ca66272e2 |
| openshift-serverless-1/serving-autoscaler-rhel8@sha256:d5581529fa37f2b4a2f8c28e5c26c209eb15541fb5780e4ab4d9bddb34886e5c |
| openshift-serverless-1/serving-controller-rhel8@sha256:232720ae9296a83da912ad1cb501cf8113b70ca15bac7251b3e4d82398c97e75 |
| openshift-serverless-1/serving-domain-mapping-rhel8@sha256:d23918b519f72b5d729ff523d33f273d5465752a2a2dedb00f64212ddf0e043b |
| openshift-serverless-1/serving-domain-mapping-webhook-rhel8@sha256:f7b9c354bfb44d97a21e990a3905eed164329430cbdc5adf5ce80c7511c1f60d |
| openshift-serverless-1/serving-queue-rhel8@sha256:78eb24a18313a547a6b7ea1fb201467fd7b294a0bbc855e00035bc7a7517d72d |
| openshift-serverless-1/serving-storage-version-migration-rhel8@sha256:61f11992e13aee18348afe91fbb3249c7918dc21fd465038473e7077d6d9a17f |
| openshift-serverless-1/serving-webhook-rhel8@sha256:3dfe50c5ec8788f94b725a6c56b35896ac78c48f9e36bacd2d658701e5d205c4 |
| openshift-serverless-1/svls-must-gather-rhel8@sha256:756522148764a3e61300823398e5d8cf68bd192703d3c1c9816b0e363049b0d7 |
s390x
| openshift-serverless-1-tech-preview/eventing-istio-controller-rhel8@sha256:2b26accba46dec1e2a7b009a651adb96e31bbcb23110e2a7d5eeb2faf1df5a89 |
| openshift-serverless-1/eventing-istio-controller-rhel8@sha256:2b26accba46dec1e2a7b009a651adb96e31bbcb23110e2a7d5eeb2faf1df5a89 |
| openshift-serverless-1-tech-preview/knative-client-plugin-event-sender-rhel8@sha256:b1e19465c334ee323f43162aef6bbd165597633d359661c0904958e2878129bc |
| openshift-serverless-1/client-kn-rhel8@sha256:0dd6bf7f92fd7eea72a3968b27f55c08808e4687e2a65b6955fa1331a79d1d5d |
| openshift-serverless-1/eventing-apiserver-receive-adapter-rhel8@sha256:dfacb95a77624c04ef789407ebd4283c88757881ea20bc341bd7d4c8d59f4754 |
| openshift-serverless-1/eventing-controller-rhel8@sha256:e9a6bdf36e9ef8a37932d7175277c6517bd0e85200f55acbe00d41028d43e4ba |
| openshift-serverless-1/eventing-in-memory-channel-controller-rhel8@sha256:54cbeee83c053938e652f273dbc25855d24407787dffca84577bad55806a2a74 |
| openshift-serverless-1/eventing-in-memory-channel-dispatcher-rhel8@sha256:a96dde60e638e2c7367ade552263f1b6a9c07e10672e0c125bf9befd48e19016 |
| openshift-serverless-1/eventing-kafka-broker-controller-rhel8@sha256:158362c50e90590fc5856f66b29812a9d8611581de494799c8e76c9a338bd119 |
| openshift-serverless-1/eventing-kafka-broker-dispatcher-rhel8@sha256:df2098edc41a26d7ac06dbcd8df0ab12a26c9f46748b96d38b42ed487f2ff321 |
| openshift-serverless-1/eventing-kafka-broker-post-install-rhel8@sha256:211908f2ce585684d4324d3702a5d78f00db3bef13aa2549ec8ea6c1f01a7060 |
| openshift-serverless-1/eventing-kafka-broker-receiver-rhel8@sha256:ae90a185be0efd775e6bf751b4ac35b09c2e9157f1ba390ecfd77748d1b2d526 |
| openshift-serverless-1/eventing-kafka-broker-webhook-rhel8@sha256:d035a6b261ede39e70d94a92b7b73a6f2b0c96ce81be603de050d08487fa25dd |
| openshift-serverless-1/eventing-mtbroker-filter-rhel8@sha256:00b929fd03bad354f0f74790f1a4516129ecbb59c9bbe7b81a78d3887991b0b1 |
| openshift-serverless-1/eventing-mtbroker-ingress-rhel8@sha256:cbb1d3fdf7997315fce99cd9d3efb83d44546c49a02df1d87a2b4e87a9ca761b |
| openshift-serverless-1/eventing-mtchannel-broker-rhel8@sha256:afec757d159ba9b5e55ffe316f4508bf6eb792c1d4d959d3e9e9a101a6905f6d |
| openshift-serverless-1/eventing-mtping-rhel8@sha256:99aae30badc49708352cbfbf746d5b71542e621bf53dbb70c020f245164ee02d |
| openshift-serverless-1/eventing-storage-version-migration-rhel8@sha256:95bc85c638bac8a717601187a9c718c42987250963c68730628942a69cf79db0 |
| openshift-serverless-1/eventing-webhook-rhel8@sha256:e16110d036af2cbb130d428665dff8928b33ea2e1a2acdf0102d7a46d40cbd1b |
| openshift-serverless-1/func-utils-rhel8@sha256:0c68af7548ee486fd5e9b894308c65003cc2eac0377d1460893069a0dd939321 |
| openshift-serverless-1/ingress-rhel8-operator@sha256:67e449a33b598650ac27665611f68df18b56de1aa64002c8eba3b85ea12a1590 |
| openshift-serverless-1/kn-cli-artifacts-rhel8@sha256:6364c73376bfb2adede70d60ad1be26abb20e43adf70300fb8dbd08df9e628ee |
| openshift-serverless-1/knative-rhel8-operator@sha256:8dbba7b46580d835fd6545c1d20cf8fe6538095581a57c1b73fd3e48c8b0c7fa |
| openshift-serverless-1/kourier-control-rhel8@sha256:0d451c996a86f0a7b61bfa2898ade82d3d1a405871e5a06ec73130dfcfb879bf |
| openshift-serverless-1/net-istio-controller-rhel8@sha256:b3ddc2fb4879ccbf437eccb8a5547718abecd3e8be9d19404e20331db3fcc483 |
| openshift-serverless-1/net-istio-webhook-rhel8@sha256:4dd5b7a044b24a8f1fb8939b40fd9e24d644671bd4f0e5ff3ebded23504d5a5f |
| openshift-serverless-1/serverless-rhel8-operator@sha256:7d553a8d9198fe9f3f9a9fb62c3fffa3deabe8e7cb84367886c30714d9779618 |
| openshift-serverless-1/serving-activator-rhel8@sha256:c2598ade3bd22ee75f1bde19e78231a151ea82b48d3bc052b4ad421f0975d9ec |
| openshift-serverless-1/serving-autoscaler-hpa-rhel8@sha256:8179a7a83fc3c83c06f6fd0b941f19d75997611822424eae6b6fc405ebc48a94 |
| openshift-serverless-1/serving-autoscaler-rhel8@sha256:16701e535d9186c611615241c955a38483d2002a53f37f45172c6d818d20c4d5 |
| openshift-serverless-1/serving-controller-rhel8@sha256:bbe167335b9444e3909f8f61c90fb5f9310acb12514cb8e137c17e98dbf64512 |
| openshift-serverless-1/serving-domain-mapping-rhel8@sha256:80ed7c55b1c316d3151b89bae226f51948f14ec69ab35633bdfb0f1a1b16882e |
| openshift-serverless-1/serving-domain-mapping-webhook-rhel8@sha256:84b4f0618e019312c2d4d0b99b6a51d5b4636a140fa784f909021c99f69863bc |
| openshift-serverless-1/serving-queue-rhel8@sha256:c7881212406406e561c74aac8c3001caf63b58a768a81d34a80644fc43d9e645 |
| openshift-serverless-1/serving-storage-version-migration-rhel8@sha256:eb6e65434196d32242557f360870d66086b1c59fd9d40afe05c97115359f003e |
| openshift-serverless-1/serving-webhook-rhel8@sha256:7d551aeaa28b6a25f9f03f253d7066ea36c0d23b0890e32f700dacb04f63864f |
| openshift-serverless-1/svls-must-gather-rhel8@sha256:e28666e6f791ad95d4dd49f75b017e3699d7edd62d22452657f6b103c95b1b10 |
x86_64
| openshift-serverless-1-tech-preview/eventing-istio-controller-rhel8@sha256:ce30d09c74245cbb5ce0bd1e56c7890d5d1dab09f32de8bb9d95dc38bcefa49a |
| openshift-serverless-1/eventing-istio-controller-rhel8@sha256:ce30d09c74245cbb5ce0bd1e56c7890d5d1dab09f32de8bb9d95dc38bcefa49a |
| openshift-serverless-1-tech-preview/knative-client-plugin-event-sender-rhel8@sha256:a4938cee3f3314274638edea5022fd24ec5cc49c054286a7a36c56bf6e45d2dd |
| openshift-serverless-1-tech-preview/logic-swf-builder-rhel8@sha256:c0413ebd128da64cd8e0ba46aedcbc680fac070b60446c0f03cb99ecdb980496 |
| openshift-serverless-1-tech-preview/logic-swf-devmode-rhel8@sha256:c3fdef608969828ad1eae21d367f6a268715acd00991e108dd113381475b7a10 |
| openshift-serverless-1/client-kn-rhel8@sha256:e4410ad59242c54f1f53a58412baca79c0bee5efc3d8b40a403e2f6eead87718 |
| openshift-serverless-1/eventing-apiserver-receive-adapter-rhel8@sha256:1bad1e5889b07aa50871d74318668082e5f7fda8c09903f2eba198d226aa2e7c |
| openshift-serverless-1/eventing-controller-rhel8@sha256:4afc2ba1d75f306319fedc00dbdb06b27e602bd6ef84b8397aefaebab32826db |
| openshift-serverless-1/eventing-in-memory-channel-controller-rhel8@sha256:2820f81589a86c6dab15c820d5e68e5a6d7d12469565033390d59ae3ec6ba31c |
| openshift-serverless-1/eventing-in-memory-channel-dispatcher-rhel8@sha256:d25907fdbf530ec6102a87391c6a47e13becb781925d4f10b6834e1720ed6eec |
| openshift-serverless-1/eventing-kafka-broker-controller-rhel8@sha256:03e1cd2f0b96780e81bd683380ab82f42e1d75c23f40b8001cc9ec04a1738b37 |
| openshift-serverless-1/eventing-kafka-broker-dispatcher-rhel8@sha256:3bc1e11288157365b856395d78e281c739c03fb4f2ae01de24a355002701c1d3 |
| openshift-serverless-1/eventing-kafka-broker-post-install-rhel8@sha256:85ca3277f066ae1465f151cc33d0c87724b7fc53705339efa6d92afc86573259 |
| openshift-serverless-1/eventing-kafka-broker-receiver-rhel8@sha256:f90d02e1bd6f24591c0e1adefef1865d4050c3680e64c12091b5941d2ac4fb03 |
| openshift-serverless-1/eventing-kafka-broker-webhook-rhel8@sha256:c5ffd229f10899555ec5967620b656092037b39542afb5911d2db303c3c715ed |
| openshift-serverless-1/eventing-mtbroker-filter-rhel8@sha256:72297f610564132fd866e7b9d1b08d391073bff769a64a00131e0e3affa06dfa |
| openshift-serverless-1/eventing-mtbroker-ingress-rhel8@sha256:f5e6bcad57f3c80e29952c93ad8d163d752d7e5342d1892c8e7c58ce3b34fdb3 |
| openshift-serverless-1/eventing-mtchannel-broker-rhel8@sha256:8b7e0adf21e59a20cb22243d12f2f30d2c26e5d94f1d9b8e8304605ff62cd250 |
| openshift-serverless-1/eventing-mtping-rhel8@sha256:c0c525c945b810a343849159fa318b4c457c96bf55cc47c4828a16a53627b6b3 |
| openshift-serverless-1/eventing-storage-version-migration-rhel8@sha256:b525ac993d501d290b59a13ad5197406d4c79f9d227641466b15968164e53a4c |
| openshift-serverless-1/eventing-webhook-rhel8@sha256:3278b3c537ad9e6034f35a4c9beb0fc5e16a40f4714783305c7dff060688e7ab |
| openshift-serverless-1/func-utils-rhel8@sha256:98570a3210cac55e2531532b7f0e7606cb4397193c801be66b67f45260db2208 |
| openshift-serverless-1/ingress-rhel8-operator@sha256:f442511f6bf6982f878d98b59ebb9791caa779278d34f8c45b94f3253896f01b |
| openshift-serverless-1/kn-cli-artifacts-rhel8@sha256:d6153fa924adca9bbf4a68d6ba8316412a386954c70750daec5fd8f9266d6f66 |
| openshift-serverless-1/knative-rhel8-operator@sha256:1b14f2108ee78ea87f3e8ddf8640dfe333a7228de4a6671ecec949bc3205981d |
| openshift-serverless-1/kourier-control-rhel8@sha256:7e8de7fbcea8dd44c3d2eb89650e4b0e98be77a1e23e7a3a7d4891618a07ba82 |
| openshift-serverless-1/net-istio-controller-rhel8@sha256:f4d503c0f6dbe4b0cc41af6ca0c4427f4a4fe0ab44a8880b39c73daf912db2a8 |
| openshift-serverless-1/net-istio-webhook-rhel8@sha256:bac38a132d2db0a4a297c4ad07f587bc336609113d628eb85c9932f375cd1f98 |
| openshift-serverless-1/serverless-operator-bundle@sha256:a82288782b61ea46d068cc09ee10608d3201c136abfc767e4d37734775101390 |
| openshift-serverless-1/serverless-rhel8-operator@sha256:3d76f026eae72fe30ff5d12c2564a593921cf4e99241859da4ec90b3ef26a35b |
| openshift-serverless-1/serving-activator-rhel8@sha256:b42cf20631e02f3ab3b1292b2624172cef3831749a3cddfd86727ee3a1411c41 |
| openshift-serverless-1/serving-autoscaler-hpa-rhel8@sha256:108b792edc1fbc77fa99dcec22bf2f7452424b4c9973971b88797c298699c689 |
| openshift-serverless-1/serving-autoscaler-rhel8@sha256:1c693aa9e457df1f8408993f556eb9f0923898eeb3884e5f9a072b4048bd1a1f |
| openshift-serverless-1/serving-controller-rhel8@sha256:45dd557dc4290516c82d91ed16e85a653116b85cd73c5739f422be4bcaad093b |
| openshift-serverless-1/serving-domain-mapping-rhel8@sha256:17e3a0db23342d32d4f08d447b4dafea288750b40a28b982ba0ee91c14211902 |
| openshift-serverless-1/serving-domain-mapping-webhook-rhel8@sha256:a542538f5fd71be92fa3aff8625ebc5f9a68981c48436ad1f83fa19ce92bf63e |
| openshift-serverless-1/serving-queue-rhel8@sha256:b45777ef967b6b9601aaf2f8a0de5c75de85323684eef296667367548bbc9736 |
| openshift-serverless-1/serving-storage-version-migration-rhel8@sha256:00aedcc18ab1a826639e8de161f34fee1eddb1823004c94a1f100711b743b4f0 |
| openshift-serverless-1/serving-webhook-rhel8@sha256:056ccae94aa36dc8845fa8f840d41ce34e3b3a924c29dcd727cfa4d0eb3e6f6e |
| openshift-serverless-1/svls-must-gather-rhel8@sha256:8878c29f676c00feb67f95e345d71c5b571b4b4bf7b021bcfcacbcdfe65a5b6d |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.