CVE-2023-3089: Red Hat Openshift Container Platform

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

A compliance problem was found in the Red Hat OpenShift Container Platform. Red Hat discovered that, when FIPS mode was enabled, not all of the cryptographic modules in use were FIPS-validated.

Affected products

  • Red Hat Openshift Container Platform: version 4.10 only
  • Red Hat Openshift Container Platform For ARM64: version 4.10 only; version 4.11 only; version 4.12 only
  • Red Hat Openshift Container Platform For Linuxone: version 4.10 only; version 4.11 only; version 4.12 only
  • Red Hat Openshift Container Platform For Power: version 4.10 only; version 4.11 only; version 4.12 only
  • Red Hat Openshift Container Platform IBM Z Systems: version 4.10 only; version 4.11 only; version 4.12 only

Published 2023-07-05. Last modified 2026-06-17.