Missing Patch for CVE-2021-39242 in OpenShift 4.9.6 Release

Missing Patch for CVE-2021-39242 in OpenShift 4.9.6 Release

CVE-2021-4047 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

The release of OpenShift 4.9.6 included four CVE fixes for the haproxy package, however the patch for CVE-2021-39242 was missing. This issue only affects Red Hat OpenShift 4.9.

Learn more about our Web Application Penetration Testing UK.