Red Hat Security Advisories · September 2022 — Red Hat Security Advisories
111 RHSAs 310 CVEs 11 EXPLOITED

Red Hat Security Response Team errata for 2022-09. Mirrored into Vulnetix VDB with downloadable CSAF.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). Each row also links to the raw CSAF document stored on the Vulnetix artefact mirror. 11 are already weaponised in the wild: see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

RHSA-2022:6443

Active exploitation (sightings)HIGH2022-09-13

Red Hat Security Advisory: mariadb:10.3 security and bug fix update

CVEs:CVE-2021-46659CVE-2021-46661CVE-2021-46663CVE-2021-46664CVE-2021-46665CVE-2021-46668CVE-2021-46669CVE-2022-21427CVE-2022-21595CVE-2022-24048CVE-2022-24050CVE-2022-24051CVE-2022-24052CVE-2022-27376CVE-2022-27377CVE-2022-27378CVE-2022-27379CVE-2022-27380CVE-2022-27381CVE-2022-27383CVE-2022-27384CVE-2022-27386CVE-2022-27387CVE-2022-27445CVE-2022-27447CVE-2022-27448CVE-2022-27449CVE-2022-27452CVE-2022-27456CVE-2022-27458CVE-2022-31622CVE-2022-31623CVE-2022-32083CVE-2022-32085CVE-2022-32087CVE-2022-32088BDU:2022-06910CNVD-2022-65002GSD-2022-27458GSD-2022-32083CNVD-2022-51599BDU:2022-04080

CSAF Red Hat errata

RHSA-2022:6306

Active exploitation (sightings)HIGH2022-09-01

Red Hat Security Advisory: rh-mariadb103-galera and rh-mariadb103-mariadb security and bug fix update

CVEs:CVE-2021-46659CVE-2021-46661CVE-2021-46663CVE-2021-46664CVE-2021-46665CVE-2021-46668CVE-2021-46669CVE-2022-21427CVE-2022-21595CVE-2022-24048CVE-2022-24050CVE-2022-24051CVE-2022-24052CVE-2022-27376CVE-2022-27377CVE-2022-27378CVE-2022-27379CVE-2022-27380CVE-2022-27381CVE-2022-27383CVE-2022-27384CVE-2022-27386CVE-2022-27387CVE-2022-27445CVE-2022-27447CVE-2022-27448CVE-2022-27449CVE-2022-27452CVE-2022-27456CVE-2022-27458CVE-2022-31622CVE-2022-31623CVE-2022-32083CVE-2022-32085CVE-2022-32087CVE-2022-32088BDU:2022-06910CNVD-2022-65002GSD-2022-27458GSD-2022-32083CNVD-2022-51599BDU:2022-04080

CSAF Red Hat errata

RHSA-2022:6152

PoC exploitCRITICAL2022-09-01

Red Hat Security Advisory: Secondary Scheduler Operator for Red Hat OpenShift 1.1.0 security update

CVEs:CVE-2022-1705CVE-2022-1962CVE-2022-24675CVE-2022-28131CVE-2022-28327CVE-2022-30629CVE-2022-30630CVE-2022-30631CVE-2022-30632CVE-2022-30633CVE-2022-30635CVE-2022-32148

Affected products

ProductStatusVendorPackage
openshift-secondary-scheduler-operator/secondary-scheduler-operator-rhel8@sha256:777bb9e4d92ca645fb10cb85d3d0bbc35408e63d0dbddee200a85a018b6afc69_amd64 as a component of OSSO 1.1 for RHEL 8 fixed Red Hat openshift-secondary-scheduler-operator/secondary-scheduler-operator-rhel8@sha256:777bb9e4d92ca645fb10cb85d3d0bbc35408e63d0dbddee200a85a018b6afc69_amd64 as a component of OSSO 1.1 for RHEL 8
openshift-secondary-scheduler-operator/secondary-scheduler-operator-rhel8@sha256:777bb9e4d92ca645fb10cb85d3d0bbc35408e63d0dbddee200a85a018b6afc69_amd64 as a component of OSSO 1.1 for RHEL 8 fixed Red Hat openshift-secondary-scheduler-operator/secondary-scheduler-operator-rhel8@sha256:777bb9e4d92ca645fb10cb85d3d0bbc35408e63d0dbddee200a85a018b6afc69_amd64 as a component of OSSO 1.1 for RHEL 8
openshift-secondary-scheduler-operator/secondary-scheduler-operator-bundle@sha256:752fb4e99e8d8dee18579aba58f34d5248822e77590a51c0d72ecbc726c90a4e_amd64 as a component of OSSO 1.1 for RHEL 8 not_affected Red Hat openshift-secondary-scheduler-operator/secondary-scheduler-operator-bundle@sha256:752fb4e99e8d8dee18579aba58f34d5248822e77590a51c0d72ecbc726c90a4e_amd64 as a component of OSSO 1.1 for RHEL 8
openshift-secondary-scheduler-operator/secondary-scheduler-operator-bundle@sha256:752fb4e99e8d8dee18579aba58f34d5248822e77590a51c0d72ecbc726c90a4e_amd64 as a component of OSSO 1.1 for RHEL 8 not_affected Red Hat openshift-secondary-scheduler-operator/secondary-scheduler-operator-bundle@sha256:752fb4e99e8d8dee18579aba58f34d5248822e77590a51c0d72ecbc726c90a4e_amd64 as a component of OSSO 1.1 for RHEL 8
CSAF Red Hat errata

RHSA-2022:6518

PoC exploitHIGH2022-09-14

Red Hat Security Advisory: rh-mysql80-mysql security, bug fix, and enhancement update

CVEs:CVE-2021-2478CVE-2021-2479CVE-2021-2481CVE-2021-35546CVE-2021-35575CVE-2021-35577CVE-2021-35591CVE-2021-35596CVE-2021-35597CVE-2021-35602CVE-2021-35604CVE-2021-35607CVE-2021-35608CVE-2021-35610CVE-2021-35612CVE-2021-35622CVE-2021-35623CVE-2021-35624CVE-2021-35625CVE-2021-35626CVE-2021-35627CVE-2021-35628CVE-2021-35630CVE-2021-35631CVE-2021-35632CVE-2021-35633CVE-2021-35634CVE-2021-35635CVE-2021-35636CVE-2021-35637CVE-2021-35638CVE-2021-35639CVE-2021-35640CVE-2021-35641CVE-2021-35642CVE-2021-35643CVE-2021-35644CVE-2021-35645CVE-2021-35646CVE-2021-35647CVE-2021-35648CVE-2022-21245CVE-2022-21249CVE-2022-21253CVE-2022-21254CVE-2022-21256CVE-2022-21264CVE-2022-21265CVE-2022-21270CVE-2022-21278CVE-2022-21297CVE-2022-21301CVE-2022-21302CVE-2022-21303CVE-2022-21304CVE-2022-21339CVE-2022-21342CVE-2022-21344CVE-2022-21348CVE-2022-21351CVE-2022-21352CVE-2022-21358CVE-2022-21362CVE-2022-21367CVE-2022-21368CVE-2022-21370CVE-2022-21372CVE-2022-21374CVE-2022-21378CVE-2022-21379CVE-2022-21412CVE-2022-21413CVE-2022-21414CVE-2022-21415CVE-2022-21417CVE-2022-21418CVE-2022-21423CVE-2022-21425CVE-2022-21427CVE-2022-21435CVE-2022-21436CVE-2022-21437CVE-2022-21438CVE-2022-21440CVE-2022-21444CVE-2022-21451CVE-2022-21452CVE-2022-21454CVE-2022-21455CVE-2022-21457CVE-2022-21459CVE-2022-21460CVE-2022-21462CVE-2022-21478CVE-2022-21479CVE-2022-21509CVE-2022-21515CVE-2022-21517CVE-2022-21522CVE-2022-21525CVE-2022-21526CVE-2022-21527CVE-2022-21528CVE-2022-21529CVE-2022-21530CVE-2022-21531CVE-2022-21534CVE-2022-21537CVE-2022-21538CVE-2022-21539CVE-2022-21547CVE-2022-21553CVE-2022-21556CVE-2022-21569CVE-2022-21592CVE-2022-21595CVE-2022-21600CVE-2022-21605CVE-2022-21607CVE-2022-21635CVE-2022-21638CVE-2022-21641CVE-2023-21866CVE-2023-21872CVE-2023-21950

CSAF Red Hat errata

RHSA-2022:6590

PoC exploitMEDIUM2022-09-20

Red Hat Security Advisory: mysql security, bug fix, and enhancement update

CVEs:CVE-2022-21412CVE-2022-21413CVE-2022-21414CVE-2022-21415CVE-2022-21417CVE-2022-21418CVE-2022-21423CVE-2022-21425CVE-2022-21427CVE-2022-21435CVE-2022-21436CVE-2022-21437CVE-2022-21438CVE-2022-21440CVE-2022-21444CVE-2022-21451CVE-2022-21452CVE-2022-21454CVE-2022-21455CVE-2022-21457CVE-2022-21459CVE-2022-21460CVE-2022-21462CVE-2022-21478CVE-2022-21479CVE-2022-21509CVE-2022-21515CVE-2022-21517CVE-2022-21522CVE-2022-21525CVE-2022-21526CVE-2022-21527CVE-2022-21528CVE-2022-21529CVE-2022-21530CVE-2022-21531CVE-2022-21534CVE-2022-21537CVE-2022-21538CVE-2022-21539CVE-2022-21547CVE-2022-21553CVE-2022-21556CVE-2022-21569CVE-2022-21592CVE-2022-21605CVE-2022-21607CVE-2022-21635CVE-2022-21638CVE-2022-21641CVE-2023-21866CVE-2023-21872

CSAF Red Hat errata

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.