VDB
RHSA-2021%3A2121
RHSA-2021%3A2121
PUBLISHED
CVSS 8.600000381469727 HIGH
A flaw was found in github.com/gogo/protobuf before 1.3.2 that allows an out-of-bounds access when unmarshalling certain protobuf objects. This flaw allows a remote attacker to send crafted protobuf messages, causing panic and resulting in a denial of service. The highest threat from this vulnerability is to availability.
Risk Scores
CVSS 3.1
8.600000381469727
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | openshift4/egress-router-cni-rhel8@sha256:c6d4e8732d15480eead1efab5de377c600f80e6a3ef91451aefdb599db82486b_ppc64le as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/egress-router-cni-rhel8@sha256:c6d4e8732d15480eead1efab5de377c600f80e6a3ef91451aefdb599db82486b_ppc64le |
| Red Hat | openshift4/ose-installer-artifacts@sha256:761f9fc07726267b28f175669cf665303055045959420f9a10b2075221ab8148_s390x as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-installer-artifacts@sha256:761f9fc07726267b28f175669cf665303055045959420f9a10b2075221ab8148_s390x |
| Red Hat | openshift4/ovirt-csi-driver-rhel7@sha256:73bb3a92e443c6fc8b5a971245027dc411a1c5d510dbc7ba84c7c789d2c21918_s390x as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ovirt-csi-driver-rhel7@sha256:73bb3a92e443c6fc8b5a971245027dc411a1c5d510dbc7ba84c7c789d2c21918_s390x |
| Red Hat | openshift4/ose-multus-admission-controller@sha256:9fffc1dfa1aefff53c5f15806ea471ef4ae288d9762fe4ca16c11db26d17eb05_ppc64le as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-multus-admission-controller@sha256:9fffc1dfa1aefff53c5f15806ea471ef4ae288d9762fe4ca16c11db26d17eb05_ppc64le |
| Red Hat | openshift4/ose-operator-marketplace@sha256:3657c163570bbae233b3dfa846cc5d68364be807b6ce2ebe464c2e3364dfe32a_ppc64le as a component of Red Hat OpenShift Container Platform 4.7 | * |
| Red Hat | openshift4/ose-jenkins-agent-base@sha256:1b28b50a6bbe3b908739deec386555ef7ac16a38918c45c91bf37335d4d7d215_ppc64le as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-jenkins-agent-base@sha256:1b28b50a6bbe3b908739deec386555ef7ac16a38918c45c91bf37335d4d7d215_ppc64le |
| Red Hat | openshift4/ose-kube-state-metrics@sha256:395febdac88f8f4d95e1badcaf50ecb592c52c1066e69fb49edae087aae6ebeb_s390x as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-kube-state-metrics@sha256:395febdac88f8f4d95e1badcaf50ecb592c52c1066e69fb49edae087aae6ebeb_s390x |
| Red Hat | openshift4/ose-cluster-authentication-operator@sha256:4e799f99656eba34579d6a63ad526cc0257507f2e35df5376d29868ad1032daa_s390x as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-cluster-authentication-operator@sha256:4e799f99656eba34579d6a63ad526cc0257507f2e35df5376d29868ad1032daa_s390x |
| Red Hat | openshift4/ose-csi-snapshot-controller-rhel8@sha256:cf9dc060593762cdf72d573d6fda251d059de85bd1ecabce9ea9dc1861e11c4b_ppc64le as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-csi-snapshot-controller-rhel8@sha256:cf9dc060593762cdf72d573d6fda251d059de85bd1ecabce9ea9dc1861e11c4b_ppc64le |
| Red Hat | openshift4/ose-vsphere-problem-detector-rhel8@sha256:56ebeb6cccbef084b359c1f359552a343eebf00906b4218815295a2e5d5cc326_s390x as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-vsphere-problem-detector-rhel8@sha256:56ebeb6cccbef084b359c1f359552a343eebf00906b4218815295a2e5d5cc326_s390x |
| Red Hat | openshift4/ose-vsphere-problem-detector-rhel8@sha256:fd9b322c2898b008a63724973d9ff89494f92456fc3f99e265222fc67deae409_ppc64le as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-vsphere-problem-detector-rhel8@sha256:fd9b322c2898b008a63724973d9ff89494f92456fc3f99e265222fc67deae409_ppc64le |
| Red Hat | openshift4/ose-multus-networkpolicy-rhel8@sha256:a7abf2f5d90899f94254d459988df9d01645ce9c1a8247ca1cc0fcbb85e87518_s390x as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-multus-networkpolicy-rhel8@sha256:a7abf2f5d90899f94254d459988df9d01645ce9c1a8247ca1cc0fcbb85e87518_s390x |
| Red Hat | openshift4/ose-csi-external-snapshotter@sha256:d5b0cefaeec62919e464eca352b3784e69ec8439cbe7f7064339927d9845fa7d_ppc64le as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-csi-external-snapshotter@sha256:d5b0cefaeec62919e464eca352b3784e69ec8439cbe7f7064339927d9845fa7d_ppc64le |
| Red Hat | openshift4/ose-haproxy-router@sha256:159b4b2b0a2b85d9d36ee1b99718382eb5adf5e95bd230b0fc07f13b6e37e27d_ppc64le as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-haproxy-router@sha256:159b4b2b0a2b85d9d36ee1b99718382eb5adf5e95bd230b0fc07f13b6e37e27d_ppc64le |
| Red Hat | openshift4/ose-cluster-monitoring-operator@sha256:630755b449bba2efe164db97d857c1c7824b9a3c763d7e942f341ec2cc61fbe6_ppc64le as a component of Red Hat OpenShift Container Platform 4.7 | * |
| Red Hat | openshift4/ose-cluster-etcd-rhel8-operator@sha256:db7c5b125f97a1f242a08500b1f64b794c348fcd39d8caa8bb604ec846aedfbc_amd64 as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-cluster-etcd-rhel8-operator@sha256:db7c5b125f97a1f242a08500b1f64b794c348fcd39d8caa8bb604ec846aedfbc_amd64 |
| Red Hat | openshift4/ose-cluster-kube-storage-version-migrator-rhel8-operator@sha256:947110a50b1194a1d51a3cac9e1534e73376a988c2eae7c28a6d4539afd7b993_ppc64le as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-cluster-kube-storage-version-migrator-rhel8-operator@sha256:947110a50b1194a1d51a3cac9e1534e73376a988c2eae7c28a6d4539afd7b993_ppc64le |
| Red Hat | openshift4/ose-jenkins@sha256:f4ca99dc08f52cba3ee69e640e510b5948256e2587e46fec43c317e6da74f37f_s390x as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-jenkins@sha256:f4ca99dc08f52cba3ee69e640e510b5948256e2587e46fec43c317e6da74f37f_s390x |
| Red Hat | openshift4/ose-cluster-kube-scheduler-operator@sha256:fb6065666847dece4bd1123eef7a4636e6f5b1748244576f6cb933a398a97587_s390x as a component of Red Hat OpenShift Container Platform 4.7 | * |
| Red Hat | openshift4/ose-csi-node-driver-registrar-rhel8@sha256:e5d0a96d4e2f8363af4f132cedea5e48bd9b5b42294c92ae4dd1eb40acc14340_s390x as a component of Red Hat OpenShift Container Platform 4.7 | openshift4/ose-csi-node-driver-registrar-rhel8@sha256:e5d0a96d4e2f8363af4f132cedea5e48bd9b5b42294c92ae4dd1eb40acc14340_s390x |
…and 372 more
Timeline
- Jun 1, 2021 CVE Published
- Mar 26, 2026 CVE Updated
- May 1, 2026 Distribution Patch
- May 1, 2026 Distribution Patch
- May 1, 2026 Security Advisory
- May 1, 2026 Security Advisory
References
- https://access.redhat.com/errata/RHSA-2021:2121 advisory
- https://access.redhat.com/security/updates/classification/#moderate advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1921650 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1923268 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1947216 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1953963 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1957749 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1959238 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1960103 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1961941 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1962302 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1962312 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1962435 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1963115 issue
- https://security.access.redhat.com/data/csaf/v2/advisories/2021/rhsa-2021_2121.json advisory
- https://access.redhat.com/security/cve/CVE-2021-3121 advisory
- https://www.cve.org/CVERecord?id=CVE-2021-3121 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2021-3121 advisory