RHSA-2024:8235HighCVSS 8.8

Red Hat Security Advisory: OpenShift Container Platform 4.14.39 security update

Published
October 23, 2024
Last Modified
June 2, 2026

🔗 CVE IDs covered (7)

📋 Description

CVE-2023-29401 — golang-github-gin-gonic-gin: Gin Web Framework does not properly sanitize filename parameter of Context.FileAttachment function CVE-2023-45288 — golang: net/http, x/net/http2: unlimited number of CONTINUATION frames causes DoS CVE-2023-47108 — opentelemetry-go-contrib: DoS vulnerability in otelgrpc due to unbound cardinality metrics CVE-2023-48795 — ssh: Prefix truncation attack on Binary Packet Protocol (BPP) CVE-2024-2961 — glibc: Out of bounds write in iconv may lead to remote code execution CVE-2024-28180 — jose-go: improper handling of highly compressed data CVE-2024-44082 — openstack-ironic: Specially crafted image may allow authenticated users to gain access to potentially sensitive data

🔗 References (26)