RHSA-2024:0040CriticalCVSS 8.1
Red Hat Security Advisory: OpenShift Container Platform 4.16.0 security and extras update
🔗 CVE IDs covered (4)
📋 Description
CVE-2023-48795 — ssh: Prefix truncation attack on Binary Packet Protocol (BPP) CVE-2023-49569 — go-git: Maliciously crafted Git server replies can lead to path traversal and RCE on go-git clients CVE-2024-24786 — golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON CVE-2024-28110 — cloudevents/sdk-go: usage of WithRoundTripper to create a Client leaks credentials
🔗 References (42)
- selfhttps://access.redhat.com/errata/RHSA-2024:0040
- externalhttps://access.redhat.com/security/updates/classification/#critical
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2254210
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2268046
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2268372
- externalhttps://issues.redhat.com/browse/OCPBUGS-24231
- externalhttps://issues.redhat.com/browse/OCPBUGS-24435
- externalhttps://issues.redhat.com/browse/OCPBUGS-24595
- externalhttps://issues.redhat.com/browse/OCPBUGS-24822
- externalhttps://issues.redhat.com/browse/OCPBUGS-24869
- externalhttps://issues.redhat.com/browse/OCPBUGS-24870
- externalhttps://issues.redhat.com/browse/OCPBUGS-24882
- externalhttps://issues.redhat.com/browse/OCPBUGS-24891
- externalhttps://issues.redhat.com/browse/OCPBUGS-24901
- externalhttps://issues.redhat.com/browse/OCPBUGS-24951
- externalhttps://issues.redhat.com/browse/OCPBUGS-24982
- externalhttps://issues.redhat.com/browse/OCPBUGS-25010
- externalhttps://issues.redhat.com/browse/OCPBUGS-25031
- externalhttps://issues.redhat.com/browse/OCPBUGS-25430
- externalhttps://issues.redhat.com/browse/OCPBUGS-25568
- externalhttps://issues.redhat.com/browse/OCPBUGS-25853
- externalhttps://issues.redhat.com/browse/OCPBUGS-25986
- externalhttps://issues.redhat.com/browse/OCPBUGS-27053
- externalhttps://issues.redhat.com/browse/OCPBUGS-27197
- externalhttps://issues.redhat.com/browse/OCPBUGS-27301
- externalhttps://issues.redhat.com/browse/OCPBUGS-27407
- externalhttps://issues.redhat.com/browse/OCPBUGS-28215
- externalhttps://issues.redhat.com/browse/OCPBUGS-28248
- externalhttps://issues.redhat.com/browse/OCPBUGS-28715
- externalhttps://issues.redhat.com/browse/OCPBUGS-29171
- externalhttps://issues.redhat.com/browse/OCPBUGS-29692
- externalhttps://issues.redhat.com/browse/OCPBUGS-30926
- externalhttps://issues.redhat.com/browse/OCPBUGS-31362
- externalhttps://issues.redhat.com/browse/OCPBUGS-31554
- externalhttps://issues.redhat.com/browse/OCPBUGS-31586
- externalhttps://issues.redhat.com/browse/OCPBUGS-32054
- externalhttps://issues.redhat.com/browse/OCPBUGS-32317
- externalhttps://issues.redhat.com/browse/OCPBUGS-32443
- externalhttps://issues.redhat.com/browse/OCPBUGS-33186
- externalhttps://issues.redhat.com/browse/OCPBUGS-33988
- externalhttps://issues.redhat.com/browse/OCPBUGS-34582
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_0040.json