RHSA-2024:0642CriticalCVSS 8.1
Red Hat Security Advisory: OpenShift Container Platform 4.14.11 bug fix and security update
🔗 CVE IDs covered (5)
📋 Description
CVE-2023-39325 — golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487) CVE-2023-45142 — opentelemetry: DoS vulnerability in otelhttp CVE-2023-47108 — opentelemetry-go-contrib: DoS vulnerability in otelgrpc due to unbound cardinality metrics CVE-2023-49568 — go-git: Maliciously crafted Git server replies can cause DoS on go-git clients CVE-2023-49569 — go-git: Maliciously crafted Git server replies can lead to path traversal and RCE on go-git clients
🔗 References (48)
- selfhttps://access.redhat.com/errata/RHSA-2024:0642
- externalhttps://access.redhat.com/security/updates/classification/#critical
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2243296
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2245180
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2251198
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2258143
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2258165
- externalhttps://issues.redhat.com/browse/OCPBUGS-11385
- externalhttps://issues.redhat.com/browse/OCPBUGS-21795
- externalhttps://issues.redhat.com/browse/OCPBUGS-21812
- externalhttps://issues.redhat.com/browse/OCPBUGS-22315
- externalhttps://issues.redhat.com/browse/OCPBUGS-23395
- externalhttps://issues.redhat.com/browse/OCPBUGS-23498
- externalhttps://issues.redhat.com/browse/OCPBUGS-23500
- externalhttps://issues.redhat.com/browse/OCPBUGS-23738
- externalhttps://issues.redhat.com/browse/OCPBUGS-24307
- externalhttps://issues.redhat.com/browse/OCPBUGS-24315
- externalhttps://issues.redhat.com/browse/OCPBUGS-24401
- externalhttps://issues.redhat.com/browse/OCPBUGS-24423
- externalhttps://issues.redhat.com/browse/OCPBUGS-24521
- externalhttps://issues.redhat.com/browse/OCPBUGS-24660
- externalhttps://issues.redhat.com/browse/OCPBUGS-25081
- externalhttps://issues.redhat.com/browse/OCPBUGS-25352
- externalhttps://issues.redhat.com/browse/OCPBUGS-25800
- externalhttps://issues.redhat.com/browse/OCPBUGS-26238
- externalhttps://issues.redhat.com/browse/OCPBUGS-26553
- externalhttps://issues.redhat.com/browse/OCPBUGS-26568
- externalhttps://issues.redhat.com/browse/OCPBUGS-26597
- externalhttps://issues.redhat.com/browse/OCPBUGS-27178
- externalhttps://issues.redhat.com/browse/OCPBUGS-27193
- externalhttps://issues.redhat.com/browse/OCPBUGS-27243
- externalhttps://issues.redhat.com/browse/OCPBUGS-27256
- externalhttps://issues.redhat.com/browse/OCPBUGS-27275
- externalhttps://issues.redhat.com/browse/OCPBUGS-27305
- externalhttps://issues.redhat.com/browse/OCPBUGS-27350
- externalhttps://issues.redhat.com/browse/OCPBUGS-27362
- externalhttps://issues.redhat.com/browse/OCPBUGS-27369
- externalhttps://issues.redhat.com/browse/OCPBUGS-27471
- externalhttps://issues.redhat.com/browse/OCPBUGS-27485
- externalhttps://issues.redhat.com/browse/OCPBUGS-27759
- externalhttps://issues.redhat.com/browse/OCPBUGS-27822
- externalhttps://issues.redhat.com/browse/OCPBUGS-27851
- externalhttps://issues.redhat.com/browse/OCPBUGS-27858
- externalhttps://issues.redhat.com/browse/OCPBUGS-28200
- externalhttps://issues.redhat.com/browse/OCPBUGS-28249
- externalhttps://issues.redhat.com/browse/OCPBUGS-28382
- externalhttps://issues.redhat.com/browse/OCPBUGS-28608
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_0642.json