CVE Vulnerabilities

CVE-2022-30629

Use of Insufficiently Random Values

Published: Aug 10, 2022 | Modified: Nov 21, 2024
CVSS 3.x
3.1
LOW
Source:
NVD
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
3.1 LOW
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Non-random values for ticket_age_add in session tickets in crypto/tls before Go 1.17.11 and Go 1.18.3 allow an attacker that can observe TLS handshakes to correlate successive connections by comparing ticket ages during session resumption.

Weakness

The product uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.

Affected Software

NameVendorStart VersionEnd Version
GoGolang*1.17.11 (excluding)
GoGolang1.18.0 (including)1.18.3 (excluding)
OADP-1.0-RHEL-8RedHatoadp/oadp-kubevirt-velero-plugin-rhel8:1.0.4-11*
OADP-1.0-RHEL-8RedHatoadp/oadp-mustgather-rhel8:1.0.4-17*
OADP-1.0-RHEL-8RedHatoadp/oadp-operator-bundle:1.0.4-17*
OADP-1.0-RHEL-8RedHatoadp/oadp-registry-rhel8:1.0.4-6*
OADP-1.0-RHEL-8RedHatoadp/oadp-rhel8-operator:1.0.4-5*
OADP-1.0-RHEL-8RedHatoadp/oadp-velero-plugin-for-aws-rhel8:1.0.4-5*
OADP-1.0-RHEL-8RedHatoadp/oadp-velero-plugin-for-csi-rhel8:1.0.4-5*
OADP-1.0-RHEL-8RedHatoadp/oadp-velero-plugin-for-gcp-rhel8:1.0.4-5*
OADP-1.0-RHEL-8RedHatoadp/oadp-velero-plugin-for-microsoft-azure-rhel8:1.0.4-5*
OADP-1.0-RHEL-8RedHatoadp/oadp-velero-plugin-rhel8:1.0.4-5*
OADP-1.0-RHEL-8RedHatoadp/oadp-velero-restic-restore-helper-rhel8:1.0.4-6*
OADP-1.0-RHEL-8RedHatoadp/oadp-velero-rhel8:1.0.4-6*
OADP-1.1-RHEL-8RedHatoadp/oadp-kubevirt-velero-plugin-rhel8:1.1.0-21*
OADP-1.1-RHEL-8RedHatoadp/oadp-mustgather-rhel8:1.1.0-63*
OADP-1.1-RHEL-8RedHatoadp/oadp-rhel8-operator:1.1.0-50*
OADP-1.1-RHEL-8RedHatoadp/oadp-velero-plugin-for-aws-rhel8:1.1.0-17*
OADP-1.1-RHEL-8RedHatoadp/oadp-velero-plugin-for-csi-rhel8:1.1.0-25*
OADP-1.1-RHEL-8RedHatoadp/oadp-velero-plugin-for-gcp-rhel8:1.1.0-17*
OADP-1.1-RHEL-8RedHatoadp/oadp-velero-plugin-for-microsoft-azure-rhel8:1.1.0-17*
OADP-1.1-RHEL-8RedHatoadp/oadp-velero-plugin-rhel8:1.1.0-20*
OADP-1.1-RHEL-8RedHatoadp/oadp-velero-restic-restore-helper-rhel8:1.1.0-25*
OADP-1.1-RHEL-8RedHatoadp/oadp-velero-rhel8:1.1.0-27*
OADP-1.1-RHEL-8RedHatoadp/oadp-volume-snapshot-mover-rhel8:1.1.0-24*
Openshift Serveless 1.24RedHatopenshift-serverless-1/client-kn-rhel8:1.3.1-4*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-apiserver-receive-adapter-rhel8:1.3.2-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-controller-rhel8:1.3.2-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-in-memory-channel-controller-rhel8:1.3.2-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-in-memory-channel-dispatcher-rhel8:1.3.2-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-kafka-broker-controller-rhel8:1.3.2-2*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-kafka-broker-dispatcher-rhel8:1.3.2-2*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-kafka-broker-post-install-rhel8:1.3.2-2*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-kafka-broker-webhook-rhel8:1.3.2-2*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-mtbroker-filter-rhel8:1.3.2-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-mtbroker-ingress-rhel8:1.3.2-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-mtchannel-broker-rhel8:1.3.2-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-mtping-rhel8:1.3.2-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-storage-version-migration-rhel8:1.3.2-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-sugar-controller-rhel8:1.3.2-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/eventing-webhook-rhel8:1.3.2-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/ingress-rhel8-operator:1.24.0-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/knative-rhel8-operator:1.24.0-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/kn-cli-artifacts-rhel8:1.3.1-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/kourier-control-rhel8:1.3.0-2*
Openshift Serveless 1.24RedHatopenshift-serverless-1/net-istio-controller-rhel8:1.3.0-2*
Openshift Serveless 1.24RedHatopenshift-serverless-1/net-istio-webhook-rhel8:1.3.0-2*
Openshift Serveless 1.24RedHatopenshift-serverless-1/serverless-operator-bundle:1.24.0-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/serverless-rhel8-operator:1.24.0-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/serving-activator-rhel8:1.3.0-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/serving-autoscaler-hpa-rhel8:1.3.0-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/serving-autoscaler-rhel8:1.3.0-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/serving-controller-rhel8:1.3.0-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/serving-domain-mapping-rhel8:1.3.0-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/serving-domain-mapping-webhook-rhel8:1.3.0-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/serving-queue-rhel8:1.3.0-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/serving-storage-version-migration-rhel8:1.3.0-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/serving-webhook-rhel8:1.3.0-3*
Openshift Serveless 1.24RedHatopenshift-serverless-1/svls-must-gather-rhel8:1.24.0-2*
Openshift Serveless 1.24RedHatopenshift-serverless-1-tech-preview/eventing-kafka-broker-controller-rhel8:1.3.2-2*
Openshift Serveless 1.24RedHatopenshift-serverless-1-tech-preview/eventing-kafka-broker-dispatcher-rhel8:1.3.2-2*
Openshift Serveless 1.24RedHatopenshift-serverless-1-tech-preview/eventing-kafka-broker-receiver-rhel8:1.3.2-2*
Openshift Serveless 1.24RedHatopenshift-serverless-1-tech-preview/eventing-kafka-broker-webhook-rhel8:1.3.2-2*
Openshift Serverless 1 on RHEL 8RedHatopenshift-serverless-clients-0:1.3.1-4.el8*
OpenShift Service Mesh 2.1RedHatservicemesh-0:2.1.5-1.el8*
OpenShift Service Mesh 2.1RedHatservicemesh-operator-0:2.1.5-1.el8*
OpenShift Service Mesh 2.1RedHatservicemesh-prometheus-0:2.23.0-9.el8*
OpenShift Service Mesh 2.1RedHatservicemesh-proxy-0:2.1.5-1.el8*
OpenShift Service Mesh 2.1RedHatservicemesh-ratelimit-0:2.1.5-1.el8*
OSSO-1.1-RHEL-8RedHatopenshift-secondary-scheduler-operator/secondary-scheduler-operator-rhel8:v1.1-11*
Red Hat Advanced Cluster Management for Kubernetes 2.7 for RHEL 8RedHatrhacm2/acm-search-v2-rhel8:v2.7.0-33*
Red Hat Ceph Storage 6.1RedHatrhceph/rhceph-6-dashboard-rhel9:6-75*
Red Hat Developer ToolsRedHatgo-toolset-1.17-0:1.17.12-1.el7_9*
Red Hat Developer ToolsRedHatgo-toolset-1.17-golang-0:1.17.12-1.el7_9*
Red Hat Enterprise Linux 8RedHatgo-toolset:rhel8-8060020220720230014.97d7f71f*
Red Hat Enterprise Linux 8RedHatcontainer-tools:rhel8-8080020230321153727.0f77c1b7*
Red Hat Enterprise Linux 9RedHatgolang-0:1.17.12-1.el9_0*
Red Hat Enterprise Linux 9RedHatgo-toolset-0:1.17.12-1.el9_0*
Red Hat Enterprise Linux 9RedHatbuildah-1:1.29.1-1.el9*
Red Hat Enterprise Linux 9RedHatpodman-2:4.4.1-3.el9*
Red Hat Enterprise Linux 9RedHatskopeo-2:1.11.2-0.1.el9*
Red Hat Enterprise Linux 9RedHatcontainernetworking-plugins-1:1.2.0-1.el9*
Red Hat Migration Toolkit for Containers 1.7RedHatrhmtc/openshift-migration-controller-rhel8:v1.7.6-6*
Red Hat Migration Toolkit for Containers 1.7RedHatrhmtc/openshift-migration-must-gather-rhel8:v1.7.6-5*
Red Hat Migration Toolkit for Containers 1.7RedHatrhmtc/openshift-migration-registry-rhel8:v1.7.6-5*
Red Hat Migration Toolkit for Containers 1.7RedHatrhmtc/openshift-migration-velero-plugin-for-aws-rhel8:v1.7.6-5*
Red Hat Migration Toolkit for Containers 1.7RedHatrhmtc/openshift-migration-velero-plugin-for-gcp-rhel8:v1.7.6-5*
Red Hat Migration Toolkit for Containers 1.7RedHatrhmtc/openshift-migration-velero-plugin-for-microsoft-azure-rhel8:v1.7.6-5*
Red Hat Migration Toolkit for Containers 1.7RedHatrhmtc/openshift-migration-velero-restic-restore-helper-rhel8:v1.7.6-5*
Red Hat Migration Toolkit for Containers 1.7RedHatrhmtc/openshift-migration-velero-rhel8:v1.7.6-5*
Red Hat Migration Toolkit for Containers 1.7RedHatrhmtc/openshift-velero-plugin-rhel8:v1.7.6-5*
Red Hat OpenShift Container Platform 4.11RedHatbutane-0:0.15.0-2.rhaos4.11.el8*
Red Hat OpenShift Container Platform 4.11RedHatcri-o-0:1.24.2-4.rhaos4.11.gitd6283df.el8*
Red Hat OpenShift Container Platform 4.11RedHatignition-0:2.14.0-4.rhaos4.11.el8*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/cloud-network-config-controller-rhel8:v4.11.0-202208031306.p0.g7a3c3c9.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/egress-router-cni-rhel8:v4.11.0-202208031306.p0.gfccaf1d.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/network-tools-rhel8:v4.11.0-202208161348.p0.g4e87286.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/oc-mirror-plugin-rhel8:v4.11.0-202208031306.p0.g3c1c80c.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-agent-installer-api-server-rhel8:v4.11.0-202208150437.p0.g0f52647.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-agent-installer-csr-approver-rhel8:v4.11.0-202208150437.p0.g9a6e300.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-agent-installer-node-agent-rhel8:v4.11.0-202208150437.p0.gb17b06b.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-agent-installer-orchestrator-rhel8:v4.11.0-202208031306.p0.g9a6e300.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-alibaba-cloud-controller-manager-rhel8:v4.11.0-202208031306.p0.g79dddb1.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-alibaba-cloud-csi-driver-container-rhel8:v4.11.0-202208031306.p0.g8dd7ae6.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-alibaba-disk-csi-driver-operator-container-rhel8:v4.11.0-202208031306.p0.gf70a51b.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-alibaba-machine-controllers-rhel8:v4.11.0-202208031306.p0.g4145108.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-apiserver-network-proxy-rhel8:v4.11.0-202208162148.p0.g9a641bb.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-aws-cloud-controller-manager-rhel8:v4.11.0-202208031306.p0.gea1a9b2.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-aws-cluster-api-controllers-rhel8:v4.11.0-202208031306.p0.gb3fe15b.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-aws-ebs-csi-driver-rhel8:v4.11.0-202208031306.p0.g7564046.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-aws-ebs-csi-driver-rhel8-operator:v4.11.0-202208031306.p0.g2c7529e.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-aws-pod-identity-webhook-rhel8:v4.11.0-202208031306.p0.ga085f1c.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-azure-cloud-controller-manager-rhel8:v4.11.0-202208102155.p0.gac2724f.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-azure-cloud-node-manager-rhel8:v4.11.0-202208102155.p0.gac2724f.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-azure-cluster-api-controllers-rhel8:v4.11.0-202208031306.p0.ga851a35.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-azure-disk-csi-driver-rhel8:v4.11.0-202208151727.p0.g2757f09.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-azure-disk-csi-driver-rhel8-operator:v4.11.0-202208101756.p0.gca54bcb.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-azure-file-csi-driver-operator-rhel8:v4.11.0-202208031306.p0.gcbe7044.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-azure-file-csi-driver-rhel8:v4.11.0-202208031306.p0.g67c3831.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-baremetal-installer-rhel8:v4.11.0-202208161507.p0.g1d2450c.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-baremetal-machine-controllers:v4.11.0-202208031306.p0.ga65be86.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-baremetal-rhel8-operator:v4.11.0-202208101627.p0.g3122fab.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-baremetal-runtimecfg-rhel8:v4.11.0-202208031306.p0.g70d770d.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cli:v4.11.0-202208150437.p0.gfcf512e.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cli-artifacts:v4.11.0-202208150437.p0.gfcf512e.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cloud-credential-operator:v4.11.0-202208031306.p0.g9a40d74.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-api-rhel8:v4.11.0-202208031306.p0.gf9c215c.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-authentication-operator:v4.11.0-202208031306.p0.ge2bcbaa.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-autoscaler:v4.11.0-202208150437.p0.g80a9b6d.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-autoscaler-operator:v4.11.0-202208031306.p0.gfcffbcd.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-baremetal-operator-rhel8:v4.11.0-202208031306.p0.g0f415d1.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-bootstrap:v4.11.0-202208031306.p0.gf22d1c6.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-capi-operator-container-rhel8:v4.11.0-202208031306.p0.g1a88f55.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-capi-rhel8-operator:v4.11.0-202208031306.p0.g1a88f55.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-cloud-controller-manager-operator-rhel8:v4.11.0-202208031306.p0.gc2f2cbf.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-config-operator:v4.11.0-202208031306.p0.g0e01b06.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-csi-snapshot-controller-rhel8-operator:v4.11.0-202208031306.p0.g8d0774f.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-dns-operator:v4.11.0-202208031306.p0.g8998093.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-etcd-rhel8-operator:v4.11.0-202208162257.p0.g5579971.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-image-registry-operator:v4.11.0-202208031306.p0.g4d66ea3.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-ingress-operator:v4.11.0-202208031306.p0.g2432dad.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-kube-apiserver-operator:v4.11.0-202208031306.p0.gc7c94db.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-kube-cluster-api-rhel8-operator:v4.11.0-202208031306.p0.g55efc39.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-kube-controller-manager-operator:v4.11.0-202208031306.p0.ga6cb428.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-kube-scheduler-operator:v4.11.0-202208151647.p0.g34132f9.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-kube-storage-version-migrator-rhel8-operator:v4.11.0-202208031306.p0.g12d050a.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-machine-approver:v4.11.0-202208031306.p0.g3ee1fe4.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-monitoring-operator:v4.11.0-202208110436.p0.g2e9b60a.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-network-operator:v4.11.0-202208031306.p0.g3528a6b.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-node-tuning-operator:v4.11.0-202208161847.p0.gf75e0e7.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-openshift-apiserver-operator:v4.11.0-202208031306.p0.g5ddbeef.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-openshift-controller-manager-operator:v4.11.0-202208161348.p0.g6b1bf28.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-policy-controller-rhel8:v4.11.0-202208031703.p0.gc7201ed.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-samples-operator:v4.11.0-202208150437.p0.g375a4a9.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-storage-operator:v4.11.0-202208110436.p0.g8377efd.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-cluster-version-operator:v4.11.0-202208161348.p0.g0520e51.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-configmap-reloader:v4.11.0-202208031306.p0.gb7c03bb.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-console:v4.11.0-202208110436.p0.g6b10e5b.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-console-operator:v4.11.0-202208031306.p0.g501e91f.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-container-networking-plugins-rhel8:v4.11.0-202208031306.p0.g0ad9da6.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-coredns:v4.11.0-202208031306.p0.g7fe212f.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-driver-manila-rhel8:v4.11.0-202208031306.p0.g246ae15.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-driver-manila-rhel8-operator:v4.11.0-202208031306.p0.g12cb253.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-driver-nfs-rhel8:v4.11.0-202208150437.p0.gf144bb4.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-driver-shared-resource-operator-rhel8:v4.11.0-202208031306.p0.gd3985eb.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-driver-shared-resource-rhel8:v4.11.0-202208031306.p0.g3f69f2f.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-driver-shared-resource-webhook-rhel8:v4.11.0-202208031306.p0.g3f69f2f.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-external-attacher:v4.11.0-202208150437.p0.gda5442f.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-external-attacher-rhel8:v4.11.0-202208150437.p0.gda5442f.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-external-provisioner:v4.11.0-202208150437.p0.g86277ec.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-external-provisioner-rhel8:v4.11.0-202208150437.p0.g86277ec.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-external-resizer:v4.11.0-202208031306.p0.g2cea576.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-external-resizer-rhel8:v4.11.0-202208031306.p0.g2cea576.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-external-snapshotter:v4.11.0-202208031306.p0.g0afdf73.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-external-snapshotter-rhel8:v4.11.0-202208031306.p0.g0afdf73.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-livenessprobe:v4.11.0-202208150437.p0.g7319607.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-livenessprobe-rhel8:v4.11.0-202208150437.p0.g7319607.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-node-driver-registrar:v4.11.0-202208031306.p0.g710109c.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-node-driver-registrar-rhel8:v4.11.0-202208031306.p0.g710109c.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-snapshot-controller:v4.11.0-202208031306.p0.g0afdf73.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-snapshot-controller-rhel8:v4.11.0-202208031306.p0.g0afdf73.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-csi-snapshot-validation-webhook-rhel8:v4.11.0-202208031306.p0.g0afdf73.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-docker-builder:v4.11.0-202208161927.p0.g09e95c1.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-docker-registry:v4.11.0-202208031306.p0.g9f07f43.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-gcp-cloud-controller-manager-rhel8:v4.11.0-202208031306.p0.g9a303b1.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-gcp-cluster-api-controllers-rhel8:v4.11.0-202208031306.p0.gff20dda.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-gcp-pd-csi-driver-operator-rhel8:v4.11.0-202208031306.p0.gbc7bad4.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-gcp-pd-csi-driver-rhel8:v4.11.0-202208031306.p0.gf9d7fdc.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-grafana:v4.11.0-202208031306.p0.g6773185.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-hyperkube:v4.11.0-202208150437.p0.g4f0dd4d.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-hypershift-rhel8:v4.11.0-202208110157.p0.g2b7ac52.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-ibm-cloud-controller-manager-rhel8:v4.11.0-202208031306.p0.gce83696.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-ibmcloud-machine-controllers-rhel8:v4.11.0-202208031306.p0.g3bde969.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-ibm-vpc-block-csi-driver-operator-rhel8:v4.11.0-202208031306.p0.ge4a2180.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-ibm-vpc-block-csi-driver-rhel8:v4.11.0-202208031306.p0.gc85624d.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-ibm-vpc-node-label-updater-rhel8:v4.11.0-202208031306.p0.g32e18fa.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-image-customization-controller-rhel8:v4.11.0-202208111407.p0.g42b4b1f.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-insights-rhel8-operator:v4.11.0-202208031306.p0.g0929403.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-installer:v4.11.0-202208161507.p0.g1d2450c.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-installer-artifacts:v4.11.0-202208161507.p0.g1d2450c.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-ironic-machine-os-downloader-rhel8:v4.11.0-202208101627.p0.g2f582d8.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-k8s-prometheus-adapter:v4.11.0-202208031703.p0.g32fb8ea.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-kube-proxy:v4.11.0-202208161348.p0.g93345d4.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-kube-rbac-proxy:v4.11.0-202208031306.p0.ga805ba5.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-kube-state-metrics:v4.11.0-202208031306.p0.g896d000.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-kube-storage-version-migrator-rhel8:v4.11.0-202208031306.p0.g596745c.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-kuryr-cni-rhel8:v4.11.0-202208150437.p0.g6952743.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-libvirt-machine-controllers:v4.11.0-202208031306.p0.gb6e14ea.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-machine-api-operator:v4.11.0-202208031306.p0.g4e3e83c.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-machine-api-provider-aws-rhel8:v4.11.0-202208111036.p0.gf6cf488.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-machine-api-provider-azure-rhel8:v4.11.0-202208031306.p0.g93b3f9e.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-machine-api-provider-gcp-rhel8:v4.11.0-202208031306.p0.g17a3a9f.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-machine-api-provider-openstack-rhel8:v4.11.0-202208031306.p0.geb7e497.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-machine-config-operator:v4.11.0-202208150437.p0.g8a0ada1.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-multus-admission-controller:v4.11.0-202208031306.p0.gf38aae4.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-multus-cni:v4.11.0-202208150736.p0.g3cc5a3a.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-multus-networkpolicy-rhel8:v4.11.0-202208031306.p0.g643fdaf.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-multus-route-override-cni-rhel8:v4.11.0-202208031306.p0.g523b790.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-multus-whereabouts-ipam-cni-rhel8:v4.11.0-202208031306.p0.g9951259.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-must-gather:v4.11.0-202208150437.p0.g32bca40.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-network-interface-bond-cni-rhel8:v4.11.0-202208101438.p0.gb76a677.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-network-metrics-daemon-rhel8:v4.11.0-202208031306.p0.g9482ac9.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-nutanix-machine-controllers-rhel8:v4.11.0-202208031306.p0.ga94eb77.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-oauth-apiserver-rhel8:v4.11.0-202208110436.p0.g3ca701f.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-oauth-proxy:v4.11.0-202208150437.p0.gaad1b28.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-oauth-server-rhel8:v4.11.0-202208031703.p0.g8d80088.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-openshift-apiserver-rhel8:v4.11.0-202208031306.p0.g4b6f874.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-openshift-controller-manager-rhel8:v4.11.0-202208162257.p0.g8fbe884.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-openshift-state-metrics-rhel8:v4.11.0-202208031306.p0.g1a7a5dc.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-openstack-cinder-csi-driver-rhel8:v4.11.0-202208031306.p0.g246ae15.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-openstack-cinder-csi-driver-rhel8-operator:v4.11.0-202208031306.p0.gae4c45c.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-openstack-cloud-controller-manager-rhel8:v4.11.0-202208031306.p0.g246ae15.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-openstack-machine-controllers:v4.11.0-202208031306.p0.g440ca42.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-operator-lifecycle-manager:v4.11.0-202208152036.p0.g8a984d4.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-operator-marketplace:v4.11.0-202208031306.p0.g040c64e.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-operator-registry:v4.11.0-202208152036.p0.g8a984d4.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-ovirt-machine-controllers-rhel8:v4.11.0-202208031306.p0.g5a93d94.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-ovn-kubernetes:v4.11.0-202208161348.p0.g369b3a4.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-pod:v4.11.0-202208101756.p0.g4f0dd4d.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-powervs-cloud-controller-manager-rhel8:v4.11.0-202208031306.p0.g8ace6e9.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-powervs-machine-controllers-rhel8:v4.11.0-202208031306.p0.g76649b3.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-prometheus:v4.11.0-202208031306.p0.gd2dfc27.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-prometheus-alertmanager:v4.11.0-202208031306.p0.g05cfc39.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-prometheus-config-reloader:v4.11.0-202208031306.p0.gcb3afa2.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-prometheus-node-exporter:v4.11.0-202208031306.p0.g0102201.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-prometheus-operator:v4.11.0-202208031306.p0.gcb3afa2.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-prometheus-operator-admission-webhook-rhel8:v4.11.0-202208031306.p0.gcb3afa2.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-prom-label-proxy:v4.11.0-202208031306.p0.gaf12fbc.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-sdn-rhel8:v4.11.0-202208161348.p0.g93345d4.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-service-ca-operator:v4.11.0-202208031703.p0.g0899d11.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-telemeter:v4.11.0-202208031306.p0.g77b2966.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-tests:v4.11.0-202208150437.p0.g2137b2b.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-thanos-rhel8:v4.11.0-202208031306.p0.gf08da2d.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-vmware-vsphere-csi-driver-operator-rhel8:v4.11.0-202208102155.p0.g23c555e.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-vmware-vsphere-csi-driver-rhel8:v4.11.0-202208031306.p0.gd4721ba.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-vsphere-cloud-controller-manager-rhel8:v4.11.0-202208031306.p0.g6fd8e8d.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-vsphere-cluster-api-controllers-rhel8:v4.11.0-202208031306.p0.gf67d1d0.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-vsphere-csi-driver-operator-rhel8:v4.11.0-202208102155.p0.g23c555e.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-vsphere-csi-driver-rhel8:v4.11.0-202208031306.p0.gd4721ba.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-vsphere-csi-driver-syncer-rhel8:v4.11.0-202208031306.p0.gd4721ba.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ose-vsphere-problem-detector-rhel8:v4.11.0-202208031306.p0.g5910f33.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ovirt-csi-driver-rhel7:v4.11.0-202208031306.p0.g0b3d79b.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ovirt-csi-driver-rhel8:v4.11.0-202208031306.p0.g0b3d79b.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4/ovirt-csi-driver-rhel8-operator:v4.11.0-202208031306.p0.g7a30e38.assembly.stream*
Red Hat OpenShift Container Platform 4.11RedHatcri-tools-0:1.24.2-6.el8*
Red Hat OpenShift Container Platform 4.11RedHatpodman-2:4.0.2-7.rhaos4.11.el8*
Red Hat OpenShift Container Platform 4.11RedHatskopeo-2:1.5.2-4.rhaos4.11.el8*
Red Hat OpenShift Container Platform 4.11RedHatopenshift4-wincw/windows-machine-config-rhel8-operator:6.0.1-38*
Red Hat OpenStack Platform 16.1RedHatetcd-0:3.3.23-12.el8ost*
Red Hat OpenStack Platform 16.2RedHatetcd-0:3.3.23-12.el8ost*
RHEL-7-CNV-4.12RedHatkubevirt-0:4.12.0-1057.el7*
RHEL-8-CNV-4.12RedHatkubevirt-0:4.12.0-1057.el8*
RHEL-8-CNV-4.12RedHatcontainer-native-virtualization/hostpath-csi-driver:v4.12.0-30*
RHEL-8-CNV-4.12RedHatcontainer-native-virtualization/hostpath-provisioner-rhel8:v4.12.0-30*
RHEL-8-CNV-4.12RedHatcontainer-native-virtualization/hostpath-provisioner-rhel8-operator:v4.12.0-31*
RHEL-8-CNV-4.12RedHatcontainer-native-virtualization/kubevirt-template-validator:v4.12.0-32*
RHEL-8-CNV-4.12RedHatcontainer-native-virtualization/libguestfs-tools:v4.12.0-255*
RHEL-8-CNV-4.12RedHatcontainer-native-virtualization/virt-cdi-cloner:v4.12.0-72*
STF-1.5-RHEL-8RedHatstf/sg-core-rhel8:5.1.1-2*
Golang-1.13Ubuntubionic*
Golang-1.13Ubuntuesm-apps/bionic*
Golang-1.13Ubuntuesm-apps/jammy*
Golang-1.13Ubuntuesm-apps/xenial*
Golang-1.13Ubuntuesm-infra/focal*
Golang-1.13Ubuntufocal*
Golang-1.13Ubuntujammy*
Golang-1.13Ubuntutrusty*
Golang-1.13Ubuntuxenial*
Golang-1.15Ubuntuimpish*
Golang-1.16Ubuntubionic*
Golang-1.16Ubuntuesm-apps/bionic*
Golang-1.16Ubuntuesm-apps/focal*
Golang-1.16Ubuntufocal*
Golang-1.16Ubuntutrusty*
Golang-1.16Ubuntuxenial*
Golang-1.17Ubuntuimpish*
Golang-1.17Ubuntujammy*
Golang-1.18Ubuntubionic*
Golang-1.18Ubuntuesm-apps/bionic*
Golang-1.18Ubuntuesm-apps/focal*
Golang-1.18Ubuntuesm-apps/xenial*
Golang-1.18Ubuntufocal*
Golang-1.18Ubuntujammy*
Golang-1.18Ubuntuupstream*

Potential Mitigations

  • Use a well-vetted algorithm that is currently considered to be strong by experts in the field, and select well-tested implementations with adequate length seeds.
  • In general, if a pseudo-random number generator is not advertised as being cryptographically secure, then it is probably a statistical PRNG and should not be used in security-sensitive contexts.
  • Pseudo-random number generators can produce predictable numbers if the generator is known and the seed can be guessed. A 256-bit seed is a good starting point for producing a “random enough” number.

References