关键信息 漏洞概述 公告编号: RHSA-2025:9765 类型/严重性: 中等 主题: Red Hat OpenShift Container Platform 4.16.43 现已发布,包含多个漏洞修复和安全更新。 主要漏洞 CVE-2024-4863: openshift-api: openshift-controller-manager/build: Build Process in OpenShift Allows Overwriting of Node Pull Credentials。 CVE-2024-4857: openshift-api: openshift-controller-manager/build: Build Process in OpenShift Allows Overwriting of Node Pull Credentials。 CVE-2024-4858: openshift-api: openshift-controller-manager/build: Build Process in OpenShift Allows Overwriting of Node Pull Credentials。 CVE-2024-4859: openshift-api: openshift-controller-manager/build: Build Process in OpenShift Allows Overwriting of Node Pull Credentials。 CVE-2024-4860: openshift-api: openshift-controller-manager/build: Build Process in OpenShift Allows Overwriting of Node Pull Credentials。 CVE-2024-4861: openshift-api: openshift-controller-manager/build: Build Process in OpenShift Allows Overwriting of Node Pull Credentials。 CVE-2024-4862: openshift-api: openshift-controller-manager/build: Build Process in OpenShift Allows Overwriting of Node Pull Credentials。 CVE-2024-4863: openshift-api: openshift-controller-manager/build: Build Process in OpenShift Allows Overwriting of Node Pull Credentials。 影响的产品 Red Hat OpenShift Container Platform 4.10 for RHEL 9 x86_64 Red Hat OpenShift Container Platform for Power 4.10 for RHEL 9 ppc64le Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.10 for RHEL 9 s390x Red Hat OpenShift Container Platform for ARM64 4.10 for RHEL 9 aarch64 解决方案 更新到 Red Hat OpenShift Container Platform 4.16.43 版本,并参考相关文档进行升级操作。