VDB
RHSA-2023%3A3998
RHSA-2023%3A3998
PUBLISHED
CVSS 7.5 HIGH
A flaw was found in the Node.js word-wrap module, where it is vulnerable to a denial of service caused by a Regular expression denial of service (ReDoS) issue in the result variable. By sending a specially crafted regex input, a remote attacker can cause a denial of service.
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | openshift-logging/logging-loki-rhel8@sha256:b606595d4ebb2dea1885ec1686346997037a027813202abf7b10929ca52b843f_amd64 as a component of RHOL 5.7 for RHEL 8 | openshift-logging/logging-loki-rhel8@sha256:b606595d4ebb2dea1885ec1686346997037a027813202abf7b10929ca52b843f_amd64 |
| Red Hat | openshift-logging/vector-rhel8@sha256:88bdbee2c5cf50b9c2ef574cefff00358ec6f76639e6a5ce37617b015bb8c661_s390x as a component of RHOL 5.7 for RHEL 8 | openshift-logging/vector-rhel8@sha256:88bdbee2c5cf50b9c2ef574cefff00358ec6f76639e6a5ce37617b015bb8c661_s390x |
| Red Hat | openshift-logging/elasticsearch-proxy-rhel8@sha256:b261071a410b5a87f02ded641b6fca2ca46794c301ac51b9b1a476e5e580e597_s390x as a component of RHOL 5.7 for RHEL 8 | openshift-logging/elasticsearch-proxy-rhel8@sha256:b261071a410b5a87f02ded641b6fca2ca46794c301ac51b9b1a476e5e580e597_s390x |
| Red Hat | openshift-logging/elasticsearch-proxy-rhel8@sha256:c74a18e981756e2021247b83713f27f3442646fd3ae6ed7ba7f0a00f239760ef_amd64 as a component of RHOL 5.7 for RHEL 8 | openshift-logging/elasticsearch-proxy-rhel8@sha256:c74a18e981756e2021247b83713f27f3442646fd3ae6ed7ba7f0a00f239760ef_amd64 |
| Red Hat | openshift-logging/logging-curator5-rhel8@sha256:a5b0a709ba5f19c2e99114b4cd91f96848f503cca54b9cbdf44d4f592d27bc21_amd64 as a component of RHOL 5.7 for RHEL 8 | openshift-logging/logging-curator5-rhel8@sha256:a5b0a709ba5f19c2e99114b4cd91f96848f503cca54b9cbdf44d4f592d27bc21_amd64 |
| Red Hat | openshift-logging/opa-openshift-rhel8@sha256:0abf679b6fcc0f02af160ea3e30406cdfbd2b7ec855b4d4247133b061a2f641c_ppc64le as a component of RHOL 5.7 for RHEL 8 | * |
| Red Hat | openshift-logging/elasticsearch6-rhel8@sha256:4fdca7719007c06b5b749a4c89f80f6c9056150f9e60e00933c2c0ee1b7b6441_ppc64le as a component of RHOL 5.7 for RHEL 8 | openshift-logging/elasticsearch6-rhel8@sha256:4fdca7719007c06b5b749a4c89f80f6c9056150f9e60e00933c2c0ee1b7b6441_ppc64le |
| Red Hat | openshift-logging/fluentd-rhel8@sha256:401e04d0b993745703b300bf05d24321f1af71131fc3cf9d71fdca811cccde7d_s390x as a component of RHOL 5.7 for RHEL 8 | openshift-logging/fluentd-rhel8@sha256:401e04d0b993745703b300bf05d24321f1af71131fc3cf9d71fdca811cccde7d_s390x |
| Red Hat | openshift-logging/opa-openshift-rhel8@sha256:7ac115280092a7b1edccabc0a1a33415fa907ffed77e686742a682ed00dbe862_arm64 as a component of RHOL 5.7 for RHEL 8 | openshift-logging/opa-openshift-rhel8@sha256:7ac115280092a7b1edccabc0a1a33415fa907ffed77e686742a682ed00dbe862_arm64 |
| Red Hat | openshift-logging/log-file-metric-exporter-rhel8@sha256:66094f9dc36dd6ba75c76cf6cd8218a4386c0aa336a053d741e1cf1f23bb81dc_arm64 as a component of RHOL 5.7 for RHEL 8 | * |
| Red Hat | openshift-logging/elasticsearch6-rhel8@sha256:7af0fa05193b2f75a270c16355bcce6d2117183d59f5ed4d040d5a8e7d40e610_arm64 as a component of RHOL 5.7 for RHEL 8 | * |
| Red Hat | openshift-logging/lokistack-gateway-rhel8@sha256:8662f22d07a0ac54ab4cc7532bb48118e1836020bbcf41471f49c242a1f0c950_ppc64le as a component of RHOL 5.7 for RHEL 8 | openshift-logging/lokistack-gateway-rhel8@sha256:8662f22d07a0ac54ab4cc7532bb48118e1836020bbcf41471f49c242a1f0c950_ppc64le |
| Red Hat | openshift-logging/vector-rhel8@sha256:88bdbee2c5cf50b9c2ef574cefff00358ec6f76639e6a5ce37617b015bb8c661_s390x as a component of RHOL 5.7 for RHEL 8 | openshift-logging/vector-rhel8@sha256:88bdbee2c5cf50b9c2ef574cefff00358ec6f76639e6a5ce37617b015bb8c661_s390x |
| Red Hat | openshift-logging/logging-loki-rhel8@sha256:3dfa1aaf23e2828e75beb5065940288239cb90bda07c3b5efb46e9c25b332fe4_ppc64le as a component of RHOL 5.7 for RHEL 8 | * |
| Red Hat | openshift-logging/kibana6-rhel8@sha256:d2555e8057588a34b60584b95514be1d85de61e9efa5bf3886182eb913c48a5f_s390x as a component of RHOL 5.7 for RHEL 8 | openshift-logging/kibana6-rhel8@sha256:d2555e8057588a34b60584b95514be1d85de61e9efa5bf3886182eb913c48a5f_s390x |
| Red Hat | openshift-logging/elasticsearch-operator-bundle@sha256:1340c0cdcbd62207c8923d9b3eff883b6163d75303547551053951d049723653_amd64 as a component of RHOL 5.7 for RHEL 8 | openshift-logging/elasticsearch-operator-bundle@sha256:1340c0cdcbd62207c8923d9b3eff883b6163d75303547551053951d049723653_amd64 |
| Red Hat | openshift-logging/fluentd-rhel8@sha256:401e04d0b993745703b300bf05d24321f1af71131fc3cf9d71fdca811cccde7d_s390x as a component of RHOL 5.7 for RHEL 8 | openshift-logging/fluentd-rhel8@sha256:401e04d0b993745703b300bf05d24321f1af71131fc3cf9d71fdca811cccde7d_s390x |
| Red Hat | openshift-logging/log-file-metric-exporter-rhel8@sha256:4e9275c00e9fb0c0a50ba652792d11458e88baff2ee1bbef81be535b5a7a95f6_s390x as a component of RHOL 5.7 for RHEL 8 | openshift-logging/log-file-metric-exporter-rhel8@sha256:4e9275c00e9fb0c0a50ba652792d11458e88baff2ee1bbef81be535b5a7a95f6_s390x |
| Red Hat | openshift-logging/lokistack-gateway-rhel8@sha256:0afc1598a966c5011e4d217e392b9087b8d04654f3b3826d08d8bcb74ad3d603_s390x as a component of RHOL 5.7 for RHEL 8 | * |
| Red Hat | openshift-logging/lokistack-gateway-rhel8@sha256:0afc1598a966c5011e4d217e392b9087b8d04654f3b3826d08d8bcb74ad3d603_s390x as a component of RHOL 5.7 for RHEL 8 | openshift-logging/lokistack-gateway-rhel8@sha256:0afc1598a966c5011e4d217e392b9087b8d04654f3b3826d08d8bcb74ad3d603_s390x |
…and 106 more
Timeline
- Jul 12, 2023 CVE Published
- Apr 25, 2026 Distribution Patch
- Apr 25, 2026 Distribution Patch
- Apr 25, 2026 Security Advisory
- Apr 25, 2026 Security Advisory
- Apr 25, 2026 Security Advisory
- Apr 30, 2026 CVE Updated
References
- https://access.redhat.com/errata/RHSA-2023:3998 advisory
- https://access.redhat.com/security/updates/classification/#moderate advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2216827 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=2219310 issue
- https://issues.redhat.com/browse/LOG-3498 advisory
- https://issues.redhat.com/browse/LOG-4095 advisory
- https://issues.redhat.com/browse/LOG-4100 advisory
- https://issues.redhat.com/browse/LOG-4108 advisory
- https://issues.redhat.com/browse/LOG-4156 advisory
- https://issues.redhat.com/browse/LOG-4161 advisory
- https://issues.redhat.com/browse/LOG-4176 advisory
- https://issues.redhat.com/browse/LOG-4177 advisory
- https://issues.redhat.com/browse/LOG-4198 advisory
- https://issues.redhat.com/browse/LOG-4258 advisory
- https://issues.redhat.com/browse/LOG-4264 advisory
- https://issues.redhat.com/browse/LOG-4271 advisory
- https://issues.redhat.com/browse/LOG-4277 advisory
- https://issues.redhat.com/browse/OU-166 advisory
- https://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_3998.json advisory
- https://access.redhat.com/security/cve/CVE-2023-26115 advisory
…and 10 more