RHSA-2024:0292MediumCVSS 5.3

Red Hat Security Advisory: OpenShift Container Platform 4.14.10 security update

Published
January 23, 2024
Last Modified
August 4, 2026

🔗 CVE IDs covered (1)

📋 Description

CVE-2023-29409 — golang: crypto/tls: slow verification of certificate chains containing large RSA keys

🎯 Affected products9

  • Red Hat OpenShift Container Platform 4.14
  • microshift-0:4.14.10-202401181720.p0.gd25a4c5.assembly.4.14.10.el9.aarch64 as a component of Red Hat OpenShift Container Platform 4.14
  • microshift-0:4.14.10-202401181720.p0.gd25a4c5.assembly.4.14.10.el9.src as a component of Red Hat OpenShift Container Platform 4.14
  • microshift-0:4.14.10-202401181720.p0.gd25a4c5.assembly.4.14.10.el9.x86_64 as a component of Red Hat OpenShift Container Platform 4.14
  • microshift-greenboot-0:4.14.10-202401181720.p0.gd25a4c5.assembly.4.14.10.el9.noarch as a component of Red Hat OpenShift Container Platform 4.14
  • microshift-networking-0:4.14.10-202401181720.p0.gd25a4c5.assembly.4.14.10.el9.aarch64 as a component of Red Hat OpenShift Container Platform 4.14
  • microshift-networking-0:4.14.10-202401181720.p0.gd25a4c5.assembly.4.14.10.el9.x86_64 as a component of Red Hat OpenShift Container Platform 4.14
  • microshift-release-info-0:4.14.10-202401181720.p0.gd25a4c5.assembly.4.14.10.el9.noarch as a component of Red Hat OpenShift Container Platform 4.14
  • microshift-selinux-0:4.14.10-202401181720.p0.gd25a4c5.assembly.4.14.10.el9.noarch as a component of Red Hat OpenShift Container Platform 4.14

✅ Remediation

Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258

🔗 References (4)