Release date:
Updated on:
Affected Systems:
RedHat OpenShift Origin
Description:
--------------------------------------------------------------------------------
Bugtraq id: 57189
CVE (CAN) ID: CVE-2012-5647
Red Hat OpenShift Origin is a cloud computing platform as a service.
Red Hat OpenShift Origin restorer. php has an open Redirection Vulnerability. Remote attackers can use specially crafted links to trick victims into opening restorer. php and redirect victims to any page.
<* Source: Michael Scherer
Link: https://www.redhat.com/support/errata/RHSA-2013-0148.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
RedHat
------
For this reason, RedHat has released a Security Bulletin (RHSA-2013: 0148-01) and patch:
RHSA-2013: 0148-01: Moderate: openshift-origin-node-util security update
Link: https://www.redhat.com/support/errata/RHSA-2013-0148.html
Patch download:
RedHat OpenShift Enterprise Node:
Source:
Ftp://ftp.redhat.com/pub/redhat/linux/enterprise/6Server/en/RHOSE/SRPMS/openshift-origin-node-util-1.0.5-3.el6op.src.rpm
Noarch:
Openshift-origin-node-util-1.0.5-3.el6op.noarch.rpm