Red Hat Security Advisory: OpenShift Container Platform 4.17.1 bug fix and security update
🔗 CVE IDs covered (9)
📋 Description
CVE-2023-3462 — Hashicorp/vault: Vault’s LDAP Auth Method Allows for User Enumeration CVE-2023-45290 — golang: net/http: golang: mime/multipart: golang: net/textproto: memory exhaustion in Request.ParseMultipartForm CVE-2024-3727 — containers/image: digest type does not guarantee valid type CVE-2024-6345 — pypa/setuptools: Remote code execution via download functions in the package_index module in pypa/setuptools CVE-2024-6508 — openshift-console: OAuth2 insufficient state parameter entropy CVE-2024-24786 — golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON CVE-2024-24791 — net/http: Denial of service due to improper 100-continue handling in net/http CVE-2024-27289 — pgx: SQL Injection via Line Comment Creation CVE-2024-45296 — path-to-regexp: Backtracking regular expressions cause ReDoS
🔗 References (109)
- selfhttps://access.redhat.com/errata/RHSA-2024:7922
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2228020
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2268017
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2268046
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2268465
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2274767
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2295310
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2295777
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2297771
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2310908
- externalhttps://issues.redhat.com/browse/OCPBUGS-30950
- externalhttps://issues.redhat.com/browse/OCPBUGS-33815
- externalhttps://issues.redhat.com/browse/OCPBUGS-33834
- externalhttps://issues.redhat.com/browse/OCPBUGS-33899
- externalhttps://issues.redhat.com/browse/OCPBUGS-34034
- externalhttps://issues.redhat.com/browse/OCPBUGS-34073
- externalhttps://issues.redhat.com/browse/OCPBUGS-34134
- externalhttps://issues.redhat.com/browse/OCPBUGS-34217
- externalhttps://issues.redhat.com/browse/OCPBUGS-34285
- externalhttps://issues.redhat.com/browse/OCPBUGS-34314
- externalhttps://issues.redhat.com/browse/OCPBUGS-34643
- externalhttps://issues.redhat.com/browse/OCPBUGS-35430
- externalhttps://issues.redhat.com/browse/OCPBUGS-35868
- externalhttps://issues.redhat.com/browse/OCPBUGS-36213
- externalhttps://issues.redhat.com/browse/OCPBUGS-36680
- externalhttps://issues.redhat.com/browse/OCPBUGS-38240
- externalhttps://issues.redhat.com/browse/OCPBUGS-38379
- externalhttps://issues.redhat.com/browse/OCPBUGS-38457
- externalhttps://issues.redhat.com/browse/OCPBUGS-38462
- externalhttps://issues.redhat.com/browse/OCPBUGS-38471
- externalhttps://issues.redhat.com/browse/OCPBUGS-38563
- externalhttps://issues.redhat.com/browse/OCPBUGS-38574
- externalhttps://issues.redhat.com/browse/OCPBUGS-38760
- externalhttps://issues.redhat.com/browse/OCPBUGS-38770
- externalhttps://issues.redhat.com/browse/OCPBUGS-38784
- externalhttps://issues.redhat.com/browse/OCPBUGS-38927
- externalhttps://issues.redhat.com/browse/OCPBUGS-39013
- externalhttps://issues.redhat.com/browse/OCPBUGS-39071
- externalhttps://issues.redhat.com/browse/OCPBUGS-39091
- externalhttps://issues.redhat.com/browse/OCPBUGS-39120
- externalhttps://issues.redhat.com/browse/OCPBUGS-39124
- externalhttps://issues.redhat.com/browse/OCPBUGS-39286
- externalhttps://issues.redhat.com/browse/OCPBUGS-39390
- externalhttps://issues.redhat.com/browse/OCPBUGS-39409
- externalhttps://issues.redhat.com/browse/OCPBUGS-39414
- externalhttps://issues.redhat.com/browse/OCPBUGS-39601
- externalhttps://issues.redhat.com/browse/OCPBUGS-41255
- externalhttps://issues.redhat.com/browse/OCPBUGS-41341
- externalhttps://issues.redhat.com/browse/OCPBUGS-41357
- externalhttps://issues.redhat.com/browse/OCPBUGS-41376
- externalhttps://issues.redhat.com/browse/OCPBUGS-41576
- externalhttps://issues.redhat.com/browse/OCPBUGS-41622
- externalhttps://issues.redhat.com/browse/OCPBUGS-41685
- externalhttps://issues.redhat.com/browse/OCPBUGS-41686
- externalhttps://issues.redhat.com/browse/OCPBUGS-41817
- externalhttps://issues.redhat.com/browse/OCPBUGS-41893
- externalhttps://issues.redhat.com/browse/OCPBUGS-41908
- externalhttps://issues.redhat.com/browse/OCPBUGS-41914
- externalhttps://issues.redhat.com/browse/OCPBUGS-41933
- externalhttps://issues.redhat.com/browse/OCPBUGS-41941
- externalhttps://issues.redhat.com/browse/OCPBUGS-42006
- externalhttps://issues.redhat.com/browse/OCPBUGS-42007
- externalhttps://issues.redhat.com/browse/OCPBUGS-42008
- externalhttps://issues.redhat.com/browse/OCPBUGS-42019
- externalhttps://issues.redhat.com/browse/OCPBUGS-42060
- externalhttps://issues.redhat.com/browse/OCPBUGS-42066
- externalhttps://issues.redhat.com/browse/OCPBUGS-42081
- externalhttps://issues.redhat.com/browse/OCPBUGS-42098
- externalhttps://issues.redhat.com/browse/OCPBUGS-42116
- externalhttps://issues.redhat.com/browse/OCPBUGS-42126
- externalhttps://issues.redhat.com/browse/OCPBUGS-42131
- externalhttps://issues.redhat.com/browse/OCPBUGS-42142
- externalhttps://issues.redhat.com/browse/OCPBUGS-42164
- externalhttps://issues.redhat.com/browse/OCPBUGS-42200
- externalhttps://issues.redhat.com/browse/OCPBUGS-42223
- externalhttps://issues.redhat.com/browse/OCPBUGS-42232
- externalhttps://issues.redhat.com/browse/OCPBUGS-42248
- externalhttps://issues.redhat.com/browse/OCPBUGS-42256
- externalhttps://issues.redhat.com/browse/OCPBUGS-42261
- externalhttps://issues.redhat.com/browse/OCPBUGS-42277
- externalhttps://issues.redhat.com/browse/OCPBUGS-42296
- externalhttps://issues.redhat.com/browse/OCPBUGS-42323
- externalhttps://issues.redhat.com/browse/OCPBUGS-42336
- externalhttps://issues.redhat.com/browse/OCPBUGS-42357
- externalhttps://issues.redhat.com/browse/OCPBUGS-42362
- externalhttps://issues.redhat.com/browse/OCPBUGS-42380
- externalhttps://issues.redhat.com/browse/OCPBUGS-42394
- externalhttps://issues.redhat.com/browse/OCPBUGS-42410
- externalhttps://issues.redhat.com/browse/OCPBUGS-42421
- externalhttps://issues.redhat.com/browse/OCPBUGS-42483
- externalhttps://issues.redhat.com/browse/OCPBUGS-42580
- externalhttps://issues.redhat.com/browse/OCPBUGS-42581
- externalhttps://issues.redhat.com/browse/OCPBUGS-42582
- externalhttps://issues.redhat.com/browse/OCPBUGS-42585
- externalhttps://issues.redhat.com/browse/OCPBUGS-42606
- externalhttps://issues.redhat.com/browse/OCPBUGS-42612
- externalhttps://issues.redhat.com/browse/OCPBUGS-42622
- externalhttps://issues.redhat.com/browse/OCPBUGS-42677
- externalhttps://issues.redhat.com/browse/OCPBUGS-42678
- externalhttps://issues.redhat.com/browse/OCPBUGS-42681
- externalhttps://issues.redhat.com/browse/OCPBUGS-42699
- externalhttps://issues.redhat.com/browse/OCPBUGS-42714
- externalhttps://issues.redhat.com/browse/OCPBUGS-42721
- externalhttps://issues.redhat.com/browse/OCPBUGS-42786
- externalhttps://issues.redhat.com/browse/OCPBUGS-42812
- externalhttps://issues.redhat.com/browse/OCPBUGS-42814
- externalhttps://issues.redhat.com/browse/OCPBUGS-42853
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_7922.json