RHSA-2024:1859MediumCVSS 7.5

Red Hat Security Advisory: OpenShift API for Data Protection (OADP) 1.3.1 security and bug fix update

Published
April 16, 2024
Last Modified
May 26, 2026

🔗 CVE IDs covered (6)

📋 Description

CVE-2023-39326 — golang: net/http/internal: Denial of Service (DoS) via Resource Consumption via HTTP requests CVE-2023-45142 — opentelemetry: DoS vulnerability in otelhttp CVE-2023-45287 — golang: crypto/tls: Timing Side Channel attack in RSA based TLS key exchanges. CVE-2023-48795 — ssh: Prefix truncation attack on Binary Packet Protocol (BPP) CVE-2024-24786 — golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON CVE-2024-28180 — jose-go: improper handling of highly compressed data

🔗 References (27)