RHSA-2024:1887HighCVSS 7.7
Red Hat Security Advisory: OpenShift Container Platform 4.15.10 bug fix and security update
🔗 CVE IDs covered (3)
📋 Description
CVE-2023-47108 — opentelemetry-go-contrib: DoS vulnerability in otelgrpc due to unbound cardinality metrics CVE-2023-49568 — go-git: Maliciously crafted Git server replies can cause DoS on go-git clients CVE-2024-1139 — cluster-monitoring-operator: credentials leak
🔗 References (29)
- selfhttps://access.redhat.com/errata/RHSA-2024:1887
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2251198
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2258165
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2262158
- externalhttps://issues.redhat.com/browse/OCPBUGS-25985
- externalhttps://issues.redhat.com/browse/OCPBUGS-27029
- externalhttps://issues.redhat.com/browse/OCPBUGS-28769
- externalhttps://issues.redhat.com/browse/OCPBUGS-29922
- externalhttps://issues.redhat.com/browse/OCPBUGS-30138
- externalhttps://issues.redhat.com/browse/OCPBUGS-30306
- externalhttps://issues.redhat.com/browse/OCPBUGS-30507
- externalhttps://issues.redhat.com/browse/OCPBUGS-31081
- externalhttps://issues.redhat.com/browse/OCPBUGS-31335
- externalhttps://issues.redhat.com/browse/OCPBUGS-31348
- externalhttps://issues.redhat.com/browse/OCPBUGS-31469
- externalhttps://issues.redhat.com/browse/OCPBUGS-31471
- externalhttps://issues.redhat.com/browse/OCPBUGS-31500
- externalhttps://issues.redhat.com/browse/OCPBUGS-31503
- externalhttps://issues.redhat.com/browse/OCPBUGS-31538
- externalhttps://issues.redhat.com/browse/OCPBUGS-31599
- externalhttps://issues.redhat.com/browse/OCPBUGS-31619
- externalhttps://issues.redhat.com/browse/OCPBUGS-31651
- externalhttps://issues.redhat.com/browse/OCPBUGS-31667
- externalhttps://issues.redhat.com/browse/OCPBUGS-31670
- externalhttps://issues.redhat.com/browse/OCPBUGS-31754
- externalhttps://issues.redhat.com/browse/OCPBUGS-31764
- externalhttps://issues.redhat.com/browse/OCPBUGS-31807
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_1887.json