RHSA-2024:1946MediumCVSS 6.5

Red Hat Security Advisory: Red Hat OpenShift Service Mesh Containers for 2.5.1 security update

Published
April 22, 2024
Last Modified
May 26, 2026

🔗 CVE IDs covered (4)

📋 Description

CVE-2023-26159 — follow-redirects: Improper Input Validation due to the improper handling of URLs by the url.parse() CVE-2024-24786 — golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON CVE-2024-28180 — jose-go: improper handling of highly compressed data CVE-2024-28849 — follow-redirects: Possible credential leak

🔗 References (18)