{"id":45401,"date":"2023-07-21T19:03:43","date_gmt":"2023-07-21T15:03:43","guid":{"rendered":"https:\/\/packetstormsecurity.com\/files\/173676\/RHSA-2023-4091-01.txt"},"modified":"2023-07-22T10:45:03","modified_gmt":"2023-07-22T06:15:03","slug":"red-hat-security-advisory-2023-4091-01","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/red-hat-security-advisory-2023-4091-01\/","title":{"rendered":"Red Hat Security Advisory 2023-4091-01"},"content":{"rendered":"<p>&#8212;&#8211;BEGIN PGP SIGNED MESSAGE&#8212;&#8211;<br \/>\nHash: SHA256<\/p>\n<p>=====================================================================<br \/>\nRed Hat Security Advisory<\/p>\n<p>Synopsis: Moderate: OpenShift Container Platform 4.13.5 security update<br \/>\nAdvisory ID: RHSA-2023:4091-01<br \/>\nProduct: Red Hat OpenShift Enterprise<br \/>\nAdvisory URL: https:\/\/access.redhat.com\/errata\/RHSA-2023:4091<br \/>\nIssue date: 2023-07-20<br \/>\nCVE Names: CVE-2022-4304 CVE-2022-4450 CVE-2022-41717<br \/>\nCVE-2022-41723 CVE-2022-46663 CVE-2023-0215<br \/>\nCVE-2023-0361 CVE-2023-0464 CVE-2023-0465<br \/>\nCVE-2023-0466 CVE-2023-1255 CVE-2023-1260<br \/>\nCVE-2023-2253 CVE-2023-2650 CVE-2023-2700<br \/>\nCVE-2023-3089 CVE-2023-24329 CVE-2023-24534<br \/>\nCVE-2023-24536 CVE-2023-24537 CVE-2023-24538<br \/>\nCVE-2023-24539 CVE-2023-27561 CVE-2023-29400<br \/>\nCVE-2023-32067<br \/>\n=====================================================================<\/p>\n<p>1. Summary:<\/p>\n<p>Red Hat OpenShift Container Platform release 4.13.5 is now available with<br \/>\nupdates to packages and images that fix several bugs and add enhancements.<\/p>\n<p>This release includes a security update for Red Hat OpenShift Container<br \/>\nPlatform 4.13.<\/p>\n<p>Red Hat Product Security has rated this update as having a security impact<br \/>\nof Moderate. A Common Vulnerability Scoring System (CVSS) base score, which<br \/>\ngives a detailed severity rating, is available for each vulnerability from<br \/>\nthe CVE link(s) in the References section.<\/p>\n<p>2. Description:<\/p>\n<p>Red Hat OpenShift Container Platform is Red Hat&#8217;s cloud computing<br \/>\nKubernetes application platform solution designed for on-premise or private<br \/>\ncloud deployments.<\/p>\n<p>This advisory contains the container images for Red Hat OpenShift Container<br \/>\nPlatform 4.13.5 See the following advisory for the RPM packages for this<br \/>\nrelease:<\/p>\n<p>https:\/\/access.redhat.com\/errata\/RHSA-2023:4093<\/p>\n<p>Space precludes documenting all of the container images in this advisory.<br \/>\nSee the following Release Notes documentation, which will be updated<br \/>\nshortly for this release, for details about these changes:<\/p>\n<p>https:\/\/docs.openshift.com\/container-platform\/4.13\/release_notes\/ocp-4-13-release-notes.html<\/p>\n<p>Security Fix(es):<\/p>\n<p>* golang: net\/http: excessive memory growth in a Go server accepting HTTP\/2<br \/>\nrequests (CVE-2022-41717)<\/p>\n<p>* net\/http, golang.org\/x\/net\/http2: avoid quadratic complexity in HPACK<br \/>\ndecoding (CVE-2022-41723)<\/p>\n<p>* distribution\/distribution: DoS from malicious API request (CVE-2023-2253)<\/p>\n<p>For more details about the security issue(s), including the impact, a CVSS<br \/>\nscore, acknowledgments, and other related information, refer to the CVE<br \/>\npage(s) listed in the References section.<\/p>\n<p>All OpenShift Container Platform 4.13 users are advised to upgrade to these<br \/>\nupdated packages and images when they are available in the appropriate<br \/>\nrelease channel. To check for available updates, use the OpenShift CLI (oc)<br \/>\nor web console. Instructions for upgrading a cluster are available at<br \/>\nhttps:\/\/docs.openshift.com\/container-platform\/4.13\/updating\/updating-cluster-cli.html<\/p>\n<p>3. Solution:<\/p>\n<p>For OpenShift Container Platform 4.13 see the following documentation,<br \/>\nwhich will be updated shortly for this release, for important instructions<br \/>\non how to upgrade your cluster and fully apply this asynchronous errata<br \/>\nupdate:<br \/>\nhttps:\/\/docs.openshift.com\/container-platform\/4.13\/release_notes\/ocp-4-12-release-notes.html<\/p>\n<p>You may download the oc tool and use it to inspect release image metadata<br \/>\nfor x86_64, s390x, ppc64le, and aarch64 architectures. The image digests<br \/>\nmay be found at<br \/>\nhttps:\/\/quay.io\/repository\/openshift-release-dev\/ocp-release?tab=tags<\/p>\n<p>The sha values for the release are:<\/p>\n<p>(For x86_64 architecture)<br \/>\nThe image digest is<br \/>\nsha256:af19e94813478382e36ae1fa2ae7bbbff1f903dded6180f4eb0624afe6fc6cd4<\/p>\n<p>(For s390x architecture)<br \/>\nThe image digest is<br \/>\nsha256:d4d2c747fade057e55f64e02a34bb752bd2cd1484b02f029d0842d346f872870<\/p>\n<p>(For ppc64le architecture)<br \/>\nThe image digest is<br \/>\nsha256:48466f0b7c86292379c5d987ec37f0d4a4cc26a69357374e127a7293b230c943<\/p>\n<p>(For aarch64 architecture)<br \/>\nThe image digest is<br \/>\nsha256:e9afcbe007e2440d2b862dc7709138df73dd851421d69c7f39f195301e0cda53<\/p>\n<p>All OpenShift Container Platform 4.13 users are advised to upgrade to these<br \/>\nupdated packages and images when they are available in the appropriate<br \/>\nrelease channel. To check for available updates, use the OpenShift Console<br \/>\nor the CLI oc command. Instructions for upgrading a cluster are available<br \/>\nat<br \/>\nhttps:\/\/docs.openshift.com\/container-platform\/4.13\/updating\/updating-cluster-cli.html<\/p>\n<p>4. Bugs fixed (https:\/\/bugzilla.redhat.com\/):<\/p>\n<p>2161274 &#8211; CVE-2022-41717 golang: net\/http: excessive memory growth in a Go server accepting HTTP\/2 requests<br \/>\n2178358 &#8211; CVE-2022-41723 net\/http, golang.org\/x\/net\/http2: avoid quadratic complexity in HPACK decoding<br \/>\n2189886 &#8211; CVE-2023-2253 distribution\/distribution: DoS from malicious API request<\/p>\n<p>5. JIRA issues fixed (https:\/\/issues.redhat.com\/):<\/p>\n<p>OCPBUGS-10326 &#8211; Re-enable operator-install-single-namespace.spec.ts test<br \/>\nOCPBUGS-11143 &#8211; [Azure] Replace master failed as new master did not add into lb backend<br \/>\nOCPBUGS-11974 &#8211; User telemetry is broken (inaccurate) due to the fact that page titles are not unique.<br \/>\nOCPBUGS-12206 &#8211; [4.13] Keep systemd journal using LZ4 compression (via new env var)<br \/>\nOCPBUGS-12256 &#8211; ptp operator socket management need rework since a few test case fails due to cleaning up the file before other processes are terminated.<br \/>\nOCPBUGS-12743 &#8211; [4.13] SNO cluster deployment failing due to authentication and console CO in degraded state<br \/>\nOCPBUGS-12785 &#8211; [release-4.13] Enable\/Disable plugin options are not shown on Operator details page<br \/>\nOCPBUGS-13311 &#8211; Kubelet CA file not written by MCD firstboot<br \/>\nOCPBUGS-13323 &#8211; [4.13] Bootimage bump tracker<br \/>\nOCPBUGS-13642 &#8211; [release-4.13] OLM k8sResourcePrefix x-descriptor dropdown unexpectedly clears selections<br \/>\nOCPBUGS-13747 &#8211; [4.13] cgroupv1 support for cpu balancing is broken for non-SNO nodes<br \/>\nOCPBUGS-13752 &#8211; AdditionalTrustBundle is only included when doing mirroring<br \/>\nOCPBUGS-13809 &#8211; OVN image pre-puller pod uses `imagePullPolicy: Always` and blocks upgrade when there is no registry<br \/>\nOCPBUGS-13812 &#8211; [azure] Installer doesn&#8217;t validate diskType on ASH which lead to install fails with unsupported disktype<br \/>\nOCPBUGS-14030 &#8211; Invalid CA certificate bundle provided by service account token<br \/>\nOCPBUGS-14166 &#8211; Make Serverless form is broken<br \/>\nOCPBUGS-14189 &#8211; Route Checkbox getting checked even if it is unchecked during editing the Serverless Function form<br \/>\nOCPBUGS-14251 &#8211; Add new console metrics to cluster-monitoring-operator telemetry configuration (4.13)<br \/>\nOCPBUGS-14267 &#8211; [Openshift Pipelines] Metrics page is broken<br \/>\nOCPBUGS-14310 &#8211; Could not import multiple resources via JSON (while YAML supports this)<br \/>\nOCPBUGS-14318 &#8211; [release-4.13] gather podDisruptionBudget only from openshift namespaces<br \/>\nOCPBUGS-14336 &#8211; [Openshift Pipelines] Link to Openshift Route from service is breaking because of hardcoded value of targetPort<br \/>\nOCPBUGS-14426 &#8211; Failed to list Kepler CSV<br \/>\nOCPBUGS-14459 &#8211; The MCD repeats a &#8220;State and Reason&#8221; log line even when nothing is happening<br \/>\nOCPBUGS-14482 &#8211; Sync RHEL9 Dockerfiles to regular Dockerfiles<br \/>\nOCPBUGS-14598 &#8211; Update Jenkins to use 4.13 images<br \/>\nOCPBUGS-14773 &#8211; (release-4.13) gather &#8220;gateway-mode-config&#8221; config map from &#8220;openshift-network-operator&#8221; namespace<br \/>\nOCPBUGS-14867 &#8211; When installing SNO with bootstrap in place it takes cluster-policy-controller 6 minutes to acquire the leader lease<br \/>\nOCPBUGS-14916 &#8211; images: RHEL-8-based container image is broken<br \/>\nOCPBUGS-14943 &#8211; visiting Configurations page returns error Cannot read properties of undefined (reading &#8216;apiGroup&#8217;)<br \/>\nOCPBUGS-15031 &#8211; (release-4.13) Insights config not correctly deserialized<br \/>\nOCPBUGS-15101 &#8211; IngressVIP getting attach to two nodes at once<br \/>\nOCPBUGS-15130 &#8211; Helm Repository &#8220;Edit&#8221; button results in 404<br \/>\nOCPBUGS-15139 &#8211; The whereabouts-reconciler should not set an hard-coded node selector on the kubernetes.io\/architecture label<br \/>\nOCPBUGS-15161 &#8211; CPMS: Surface cpms vs machine diff<br \/>\nOCPBUGS-15171 &#8211; CPO doesn&#8217;t skip AWS resource deletion for &#8216;Unknown&#8217; OIDC state<br \/>\nOCPBUGS-15187 &#8211; images: RHEL-8 container image is missing `xz`<br \/>\nOCPBUGS-15224 &#8211; [4.13] openvswitch user is not in the hugetblfs group<br \/>\nOCPBUGS-15225 &#8211; while\/after upgrading to OKD 4.11 2023-01-14 CoreDNS has a problem with UDP overflows<br \/>\nOCPBUGS-15228 &#8211; Create helm release page doesn&#8217;t show a YAML editor when schema isn&#8217;t available (httpd-imagestreams chart)<br \/>\nOCPBUGS-15230 &#8211; Allow installer to use existing Azure NSG during OpenShift IPI install<br \/>\nOCPBUGS-15246 &#8211; Bump to kubernetes 1.26.6<br \/>\nOCPBUGS-15281 &#8211; Leftover IngressController Preventing Clean Uninstall<br \/>\nOCPBUGS-15289 &#8211; GCP XPN Installs Require bindPrivateDNSZone Permission in host project<br \/>\nOCPBUGS-15330 &#8211; CPMSO: fix linting issue comment in test<br \/>\nOCPBUGS-15335 &#8211; PipelineRun failed with log &#8216;Tasks Completed: 3 (Failed: 1, Cancelled 0), Skipped: 1.&#8217;<br \/>\nOCPBUGS-15360 &#8211; Serverless functions UI warning is misleading<br \/>\nOCPBUGS-15372 &#8211; [4.13z] Duplicate acls cause network policy failure for namespaces with long names (&gt;61 chars)<br \/>\nOCPBUGS-15376 &#8211; [4.13] Cleanup Tech debt: remove unused repo code<br \/>\nOCPBUGS-15410 &#8211; [release-4.13] Add Git Repository (PAC) doesn&#8217;t setup GitLab and Bitbucket configuration correct<br \/>\nOCPBUGS-15434 &#8211; [GWAPI] [4.13.z] The DNS provider failed to ensure the record, invalid value for name (gcp)<br \/>\nOCPBUGS-15457 &#8211; python-grpcio and python-protobuf are unneeded dependencies<br \/>\nOCPBUGS-15463 &#8211; [release-4.13] Unable to set protectKernelDefaults from &#8220;true&#8221; to &#8220;false&#8221; in kubelet.conf [release-4.13]\nOCPBUGS-15465 &#8211; [CI Watcher] Testing uninstall of Business Automation Operator &#8220;attempts to uninstall the Operator and delete all Operand Instances, shows &#8216;Error Deleting Operands&#8217; alert&#8221;<br \/>\nOCPBUGS-15476 &#8211; Network Operator not setting its version and blocking upgrade completion<br \/>\nOCPBUGS-15481 &#8211; [CI Watcher] Broken pipeline-plugin e2e tests: PipelineResource CRD isn&#8217;t installed anymore<br \/>\nOCPBUGS-15512 &#8211; HCP Service Loadbalancer uses default SecurityGroup<br \/>\nOCPBUGS-15515 &#8211; CI fails on TestAWSELBConnectionIdleTimeout<br \/>\nOCPBUGS-15557 &#8211; TUI stuck on agent installer network boot setup<br \/>\nOCPBUGS-15580 &#8211; updated nmstate builds will not work for MCO<br \/>\nOCPBUGS-15585 &#8211; [4.13] Cannot fix a misconfigured Egress Firewall<br \/>\nOCPBUGS-15586 &#8211; [4.13] NetworkPolicy not working as expected when allowing inbound traffic from any namespace<br \/>\nOCPBUGS-15589 &#8211; Dynamic conversion webhook clientConfig not retained as operator installs<br \/>\nOCPBUGS-15591 &#8211; GCP bootstrap VM should allow SecureBoot setting on 4.13 clusters<br \/>\nOCPBUGS-15606 &#8211; Can&#8217;t use git lfs in BuildConfig git source with strategy Docker<br \/>\nOCPBUGS-15608 &#8211; [release-4.13] Clean up old RHEL9 dockerfiles to reduce confusion<br \/>\nOCPBUGS-15720 &#8211; Helm Chart installation form hangs on create if JSON-schema is using 2019-09 or 2020-20 standard revisions<br \/>\nOCPBUGS-15721 &#8211; Helm Chart installation form hangs on create if JSON-schema contains unknown value format<br \/>\nOCPBUGS-15722 &#8211; Helm Chart installation screen fails to render if JSON schema contains remote $refs<br \/>\nOCPBUGS-15734 &#8211; [4.13] binary should be compiled on RHEL9<br \/>\nOCPBUGS-15736 &#8211; TuneD reverts node level profiles on termination<br \/>\nOCPBUGS-15738 &#8211; tuned daemonset rprivate default mount propagation with `hostPath: path: \/` volumeMount breaks CSI driver relying on multipath<br \/>\nOCPBUGS-15746 &#8211; Alibaba clusters are TechPreview and should not be upgradeable<br \/>\nOCPBUGS-15756 &#8211; [release-4.13] Bump Jenkins and Jenkins Agent Base image versions<br \/>\nOCPBUGS-15777 &#8211; ironic-agent-image PRs permafailing due to udevadm command missing<br \/>\nOCPBUGS-15782 &#8211; [OSD] There is no error message shown on node label edit modal<br \/>\nOCPBUGS-15787 &#8211; Project admins cannot see &#8216;Pipelines&#8217; section in &#8216;import from git&#8217; from RHOCP4 web console<br \/>\nOCPBUGS-15808 &#8211; [4.13.x] Downstream OLM PSA plug-in is disabled<br \/>\nOCPBUGS-15848 &#8211; The upgrade Helm Release tab in OpenShift GUI Developer console is not refreshing with updated values.<br \/>\nOCPBUGS-15892 &#8211; 9% of OKD tests failing on error: tag latest failed: Internal error occurred: registry.centos.org\/dotnet\/dotnet-31-centos7:latest: Get &#8220;https:\/\/registry.centos.org\/v2\/&#8221;: dial tcp: lookup registry.centos.org on 172.30.0.10:53: no such host<br \/>\nOCPBUGS-15962 &#8211; ovn-k8s-cni-overlay: \/lib64\/libc.so.6: version `GLIBC_2.34&#8242; not found on 4.12-to-4.13<br \/>\nOCPBUGS-15965 &#8211; Active Endpoint Connection blocks cluster uninstallation<br \/>\nOCPBUGS-16084 &#8211; [4.13] OCP 4.14.0-ec.3 machine-api-controller pod crashing<br \/>\nOCPBUGS-7762 &#8211; openshift-tests does not file Azure Disk zone topology<\/p>\n<p>6. References:<\/p>\n<p>https:\/\/access.redhat.com\/security\/cve\/CVE-2022-4304<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2022-4450<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2022-41717<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2022-41723<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2022-46663<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-0215<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-0361<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-0464<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-0465<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-0466<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-1255<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-1260<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-2253<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-2650<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-2700<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-3089<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-24329<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-24534<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-24536<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-24537<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-24538<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-24539<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-27561<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-29400<br \/>\nhttps:\/\/access.redhat.com\/security\/cve\/CVE-2023-32067<br \/>\nhttps:\/\/access.redhat.com\/security\/updates\/classification\/#moderate<br \/>\nhttps:\/\/docs.openshift.com\/container-platform\/4.13\/release_notes\/ocp-4-12-release-notes.html<\/p>\n<p>7. Contact:<\/p>\n<p>The Red Hat security contact is &lt;secalert@redhat.com&gt;. More contact<br \/>\ndetails at https:\/\/access.redhat.com\/security\/team\/contact\/<\/p>\n<p>Copyright 2023 Red Hat, Inc.<br \/>\n&#8212;&#8211;BEGIN PGP SIGNATURE&#8212;&#8211;<br \/>\nVersion: GnuPG v1<\/p>\n<p>iQIcBAEBCAAGBQJkuYVOAAoJENzjgjWX9erExUgP\/2\/25PbUv77tHgYG+Oj5rmcT<br \/>\noTnu0LnBLOsDXYGOomnrE\/UZFvWtQr8lGWpvkHpZjJjg7IZo4vN4mUhK+z7dM+3M<br \/>\nzuyV++GHDF\/zr1XxYf6xWWWNtdCTwWsUKcb6FB4J+WCiUJ8PSYFY3lbPcvAbTamP<br \/>\nHj1JHc3\/NxYswwfwBcmK+E4DX4y0XImRdu5+vIXZdp5dpTBehchnSa+Mgjt7vdwi<br \/>\nrHi7CdAsHDrPQhThlIRmc17cwsqiZS760xxpx9UNHvix5UQA9ns+OcUx\/dLaGR9E<br \/>\ndp41kCebze5st+wpBMCPoOZEvHJIMjC6ODFVb4mzRbhbAbWJS6GZl2V783v5RGrr<br \/>\nFemE7DDKKt6QEjZhT61GXVS9EdWdFrNii5kmgEiUc\/F6Md0fHrPcdt5yxK0dhPZb<br \/>\n3R\/64vcMsHllsEStpg8s1aieAZbpmheylEKK+zf82Vz3nlBNX5kxi2IxCrl4nG6X<br \/>\nKublzGkkKiNXS9rZqzPDRgtGAn5Qi01U9kUzVgdKGfMsyRnvAVDeZf\/FUdOhCm7M<br \/>\nh2Yt9M2cgPImRWatKkECpsAwcHbgGtsFL96\/5z6CSOoXbqkB2xV6LVixsoa4ys76<br \/>\ncHsXRPJFDU97Y1I9h1kJbro\/N8UdPZSicVdsWrLYadujBrhaPq5MoW+B1FpayaDh<br \/>\n+AfFGtVd9LRp5sYROCuT<br \/>\n=2EuA<br \/>\n&#8212;&#8211;END PGP SIGNATURE&#8212;&#8211;<br \/>\n&#8212;<br \/>\nRHSA-announce mailing list<br \/>\nRHSA-announce@redhat.com<br \/>\nhttps:\/\/listman.redhat.com\/mailman\/listinfo\/rhsa-announce<\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8212;&#8211;BEGIN PGP SIGNED MESSAGE&#8212;&#8211; Hash: SHA256 ===================================================================== Red Hat Security Advisory Synopsis: Moderate: OpenShift Container Platform 4.13.5 security update Advisory ID: RHSA-2023:4091-01 Product: Red Hat OpenShift Enterprise Advisory URL: https:\/\/access.redhat.com\/errata\/RHSA-2023:4091 Issue date: 2023-07-20 CVE Names: CVE-2022-4304 CVE-2022-4450 CVE-2022-41717 CVE-2022-41723 CVE-2022-46663 CVE-2023-0215 CVE-2023-0361 CVE-2023-0464 CVE-2023-0465 CVE-2023-0466 CVE-2023-1255 CVE-2023-1260 CVE-2023-2253 CVE-2023-2650 CVE-2023-2700 CVE-2023-3089 CVE-2023-24329 CVE-2023-24534 CVE-2023-24536 CVE-2023-24537 &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-45401","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/45401","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=45401"}],"version-history":[{"count":1,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/45401\/revisions"}],"predecessor-version":[{"id":45438,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/45401\/revisions\/45438"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=45401"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=45401"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=45401"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}