VDB

RHBA-2019%3A2581

RHBA-2019%3A2581 PUBLISHED CVSS 7.5 HIGH

A flaw was found in the way the DES/3DES cipher was used as part of the TLS/SSL protocol. A man-in-the-middle attacker could use this flaw to recover some plaintext data by capturing large amounts of encrypted traffic between TLS/SSL server and client if the communication used a DES/3DES based ciphersuite.

Risk Scores

CVSS 3.0
7.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Affected Products

VendorProductVersions
Red Hatopenshift3/csi-driver-registrar@sha256:f5ed23b537bd38c78a69cdc15fbfc8757dc1d93e4ec60c8e2e4b2c21177ed7e0_ppc64le as a component of Red Hat OpenShift Container Platform 3.11openshift3/csi-driver-registrar@sha256:f5ed23b537bd38c78a69cdc15fbfc8757dc1d93e4ec60c8e2e4b2c21177ed7e0_ppc64le
Red Hatopenshift3/metrics-schema-installer@sha256:f567ef170d6ac571a0b502211dd1588c299c64a42f886b8501a5c4b13e965726_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/metrics-schema-installer@sha256:f567ef170d6ac571a0b502211dd1588c299c64a42f886b8501a5c4b13e965726_amd64
Red Hatopenshift3/ose-recycler@sha256:f4987204ca67904b9fa3a0751d67afa8027a764ffd5b83529e421553c9b47303_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-recycler@sha256:f4987204ca67904b9fa3a0751d67afa8027a764ffd5b83529e421553c9b47303_amd64
Red Hatopenshift3/ose-prometheus-operator@sha256:a1c9890733a1c6e2ad09937ddb1fbaa93f22ef52eb5830203d49b9e295e279f0_ppc64le as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-prometheus-operator@sha256:a1c9890733a1c6e2ad09937ddb1fbaa93f22ef52eb5830203d49b9e295e279f0_ppc64le
Red Hatopenshift3/ose-haproxy-router@sha256:07deef108cd4aee617a59656605d7c966dedf28eeee7ffe0843be56e5ce077c9_ppc64le as a component of Red Hat OpenShift Container Platform 3.11*
Red Hatopenshift3/grafana@sha256:7440599d2b5acd01667c7c00d7b8eaad3cf6877ba079a6215ab0b5e19dba76f7_ppc64le as a component of Red Hat OpenShift Container Platform 3.11*
Red Hatopenshift3/ose-console@sha256:cbe2968f424dadcc457d0b073a85cac64a94b860484738fe8f5f43ffd3121564_ppc64le as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-console@sha256:cbe2968f424dadcc457d0b073a85cac64a94b860484738fe8f5f43ffd3121564_ppc64le
Red Hatopenshift3/jenkins-slave-nodejs-rhel7@sha256:46b8a985339d1d1dda1d44aa9c5bc45a06582e705ddf8fb3191394b5e502c056_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/jenkins-slave-nodejs-rhel7@sha256:46b8a985339d1d1dda1d44aa9c5bc45a06582e705ddf8fb3191394b5e502c056_amd64
Red Hatopenshift3/ose-egress-dns-proxy@sha256:0aa6d4341a93d6be4964c24b933041357f8e84ea89eea318917955faf5c2ef49_ppc64le as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-egress-dns-proxy@sha256:0aa6d4341a93d6be4964c24b933041357f8e84ea89eea318917955faf5c2ef49_ppc64le
Red Hatopenshift3/csi-provisioner@sha256:dda66e90ccc82eb56702147799e16ee5f0cf4e2076521440af21dd4f681de260_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/csi-provisioner@sha256:dda66e90ccc82eb56702147799e16ee5f0cf4e2076521440af21dd4f681de260_amd64
Red Hatopenshift3/ose-ovn-kubernetes@sha256:46d62a21532bb365bec6d182492e8b15681581df0059057a4fb72391c8022d2e_ppc64le as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-ovn-kubernetes@sha256:46d62a21532bb365bec6d182492e8b15681581df0059057a4fb72391c8022d2e_ppc64le
Red Hatopenshift3/ose-logging-eventrouter@sha256:d999ecebf99a5d28c9b684137f1f04491e40b2a1537fc4406984c3febeb40135_ppc64le as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-logging-eventrouter@sha256:d999ecebf99a5d28c9b684137f1f04491e40b2a1537fc4406984c3febeb40135_ppc64le
Red Hatopenshift3/ose-egress-dns-proxy@sha256:08f9a4ecde5ce726f43cd4de90d657e8a0ad4e3c150c0e8487e15fa4017f8f1f_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-egress-dns-proxy@sha256:08f9a4ecde5ce726f43cd4de90d657e8a0ad4e3c150c0e8487e15fa4017f8f1f_amd64
Red Hatopenshift3/automation-broker-apb@sha256:a4aad2f41791ab0223c36ce9f1b353d45fc33104930d9dcf5e711df977c1e641_ppc64le as a component of Red Hat OpenShift Container Platform 3.11openshift3/automation-broker-apb@sha256:a4aad2f41791ab0223c36ce9f1b353d45fc33104930d9dcf5e711df977c1e641_ppc64le
Red Hatopenshift3/ose-metrics-schema-installer@sha256:f567ef170d6ac571a0b502211dd1588c299c64a42f886b8501a5c4b13e965726_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-metrics-schema-installer@sha256:f567ef170d6ac571a0b502211dd1588c299c64a42f886b8501a5c4b13e965726_amd64
Red Hatopenshift3/ose-service-catalog@sha256:9a49c75bc750ae724f51696f4c0052325a3d379250d4973fca54e2f9562f1438_ppc64le as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-service-catalog@sha256:9a49c75bc750ae724f51696f4c0052325a3d379250d4973fca54e2f9562f1438_ppc64le
Red Hatopenshift3/local-storage-provisioner@sha256:887b76eb8a94af76e9c17d261881c48fd3eb3c48e000cab4c617e46b10d44e7a_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/local-storage-provisioner@sha256:887b76eb8a94af76e9c17d261881c48fd3eb3c48e000cab4c617e46b10d44e7a_amd64
Red Hatopenshift3/ose-cluster-autoscaler@sha256:67f3e573395b921b4da67f8f8699c9dd2642859393f9c3857794819d7f94d765_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-cluster-autoscaler@sha256:67f3e573395b921b4da67f8f8699c9dd2642859393f9c3857794819d7f94d765_amd64
Red Hatopenshift3/metrics-schema-installer@sha256:22292281c5664ad742335a5f2eec938d44abd01abcce206ea8133d3e287a1fe7_ppc64le as a component of Red Hat OpenShift Container Platform 3.11openshift3/metrics-schema-installer@sha256:22292281c5664ad742335a5f2eec938d44abd01abcce206ea8133d3e287a1fe7_ppc64le
Red Hatopenshift3/ose-ansible-service-broker@sha256:0b6b069a7d68d34d6056f7067ee0b1ebbcc138ca23fc131e91dec7f1ac593521_amd64 as a component of Red Hat OpenShift Container Platform 3.11openshift3/ose-ansible-service-broker@sha256:0b6b069a7d68d34d6056f7067ee0b1ebbcc138ca23fc131e91dec7f1ac593521_amd64

…and 133 more

Timeline

  • Sep 3, 2019 CVE Published
  • Apr 11, 2025 PoC Published
  • Apr 19, 2026 CVE Updated
  • Apr 30, 2026 Distribution Patch
  • Apr 30, 2026 Security Advisory
  • Apr 30, 2026 Security Advisory
  • Apr 30, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›