RHSA-2024:6755HighCVSS 7.5

Red Hat Security Advisory: Red Hat OpenShift Data Foundation 4.16.2 security and bug fix update

Published
September 18, 2024
Last Modified
May 23, 2026

🔗 CVE IDs covered (8)

📋 Description

CVE-2023-39325 — golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487) CVE-2024-6104 — go-retryablehttp: url might write sensitive information to log file CVE-2024-24789 — golang: archive/zip: Incorrect handling of certain ZIP files CVE-2024-28176 — jose: resource exhaustion CVE-2024-28863 — node-tar: denial of service while parsing a tar file due to lack of folders depth validation CVE-2024-29180 — webpack-dev-middleware: lack of URL validation may lead to file leak CVE-2024-37890 — nodejs-ws: denial of service when handling a request with many HTTP headers CVE-2024-41818 — fast-xml-parser: ReDOS at currency parsing in currency.js

🔗 References (29)