关键信息 漏洞概述 公告编号: RHSA-2025:13336 类型/严重性: 安全公告,重要 主题: Red Hat OpenShift Container Platform 4.16.46 更新修复了多个漏洞并增强了安全性。 影响的产品 Red Hat OpenShift Container Platform 4.16 for RHEL 8 x86_64 Red Hat OpenShift Container Platform 4.16 for RHEL 9 ppc64le Red Hat OpenShift Container Platform for IBM z and LinuxONE s390x for RHEL 9 s390x Red Hat OpenShift Container Platform for ARM 64 (A13) for RHEL 9 aarch64 固定的漏洞 CVE-2022-37337: CVSS:7.5/7.5/7.5 openshift-container-runtime Unintended Data Exposure CVE-2022-43293: CVSS:7.5/7.5/7.5 github.com/go-logr/logr Vulnerability when creating log files in github.com/go-logr/logr CVE-2022-4066: CVE-2022-6027 libxml2: Integer Overflow in xmlBuildQName() CVE-2022-5710: [OCPBUGS-5710] From 4.10 Required compute image unselected by permission for a creation image attached to additional disks in MachineSet OCPBUGS-57429: [ocpbugs 4.10] High snapshot size on rook-ceph operators, OLM operator install failures, RPC DeadlineExceeded while listing buckets OCPBUGS-59356: [release-4.10] Navigating away from plugin console.kubevirt.io/new in other tabs results in white web page OCPBUGS-59272: [IBM VPC] set offlineExpansion to false in e2e test manifest 参考链接 https://access.redhat.com/security/updates/classification/#important