Red Hat released security updates for OpenShift Container Platform 3.11 and 4.5 to address CVE-2016-2183 (SWEET32), a TLS/SSL weakness affecting DES and 3DES 64-bit block ciphers. A network-positioned attacker able to capture sufficiently large volumes of traffic from long-lived connections using these cipher suites may recover portions of encrypted plaintext through a birthday attack; Red Hat rates the issue Moderate.
RHSA-2020:0451 made OpenShift 3.11.170 available for x86_64 and ppc64le, while RHSA-2020:3842 updated the openshift-enterprise-console-container for OpenShift 4.5 on x86_64, ppc64le, and s390x. Administrators should apply prerequisite errata and upgrade affected clusters through the documented OpenShift update process; deployments should prefer AES cipher suites and avoid DES/3DES where compatibility requirements permit.

See affected versions and whether adversaries are exploiting it.
8 events from the most recent confirmed update back to the earliest known activity.
Red Hat issued RHSA-2020:3842 for openshift-enterprise-console-container in OpenShift Container Platform 4.5.13. The Moderate-severity update fixed CVE-2016-2183 for supported x86_64, ppc64le, and s390x deployments.
Red Hat issued RHSA-2020:0451 and made OpenShift Container Platform 3.11.170 available for x86_64 and ppc64le. The release updated packages and images to fix CVE-2016-2183, along with other security issues and bugs.
Red Hat released RHSA-2017:2709 and RHSA-2017:2710, fixing SWEET32 in JBoss Core Services httpd and OpenSSL packages for RHEL 7 and RHEL 6, respectively.
RHSA-2017:0462 fixed CVE-2016-2183 in the RHEL 6 Supplementary java-1.8.0-ibm package.
Red Hat released RHSA-2017:0336, RHSA-2017:0337, and RHSA-2017:0338 to address SWEET32 in IBM Java packages for RHEL 5 and RHEL 6 supplementary channels.
Red Hat issued RHSA-2016:1940 for RHEL 6 and 7, updating OpenSSL to address ten vulnerabilities including CVE-2016-2183. The update mitigated SWEET32 by lowering DES cipher-suite priority below AES while retaining DES support for compatibility.
A Red Hat Customer Portal notice identified Middleware Suite as affected by CVE-2016-2183 (SWEET32). It stated that exploitation requires a man-in-the-middle to capture at least 32 GB of traffic using negotiated DES or 3DES TLS cipher suites, and recommended disabling those ciphers.
OpenVPN reported CVE-2016-2183 (SWEET32) to Red Hat. Upstream credited Inria researchers Gaëtan Leurent and Karthikeyan Bhargavan as the original reporters.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
11 references tracked. Mallory keeps watching after this page renders.
access.redhat.com
Open sourcedocs.openshift.com
Open sourcerhn.redhat.com
Open sourceaccess.redhat.com
Open sourceaccess.redhat.com
Open sourceaccess.redhat.com
Open sourceredhat.com
Open sourcebugzilla.redhat.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.