关键信息 漏洞编号: CVE-2025-5318 漏洞描述: libssh out-of-bounds read in sftp_handle() 影响产品: - Red Hat OpenShift Container Platform 4.20 for RHEL 9 x86_64 - Red Hat OpenShift Container Platform 4.20 for RHEL 8 x86_64 - Red Hat OpenShift Container Platform 4.20 for RHEL 9 ppc64le - Red Hat OpenShift Container Platform 4.20 for RHEL 8 ppc64le - Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.20 for RHEL 9 s390x - Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.20 for RHEL 8 s390x - Red Hat OpenShift Container Platform for ARM 64 4.20 for RHEL 9 aarch64 - Red Hat OpenShift Container Platform for ARM 64 4.20 for RHEL 8 aarch64 修复措施: 建议所有OpenShift Container Platform 4.20用户升级到这些更新的包和镜像。 CVSS评分: 中等 参考资料: - https://access.redhat.com/security/updates/classification/#moderate