RHSA-2024:8418MediumCVSS 6.7
Red Hat Security Advisory: OpenShift Container Platform 4.16.z security update
🔗 CVE IDs covered (3)
📋 Description
CVE-2024-5569 — github.com/jaraco/zipp: Denial of Service (infinite loop) via crafted zip file in jaraco/zipp CVE-2024-9676 — Podman: Buildah: CRI-O: symlink traversal vulnerability in the containers/storage library can cause Denial of Service (DoS) CVE-2024-24790 — golang: net/netip: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses
🔗 References (6)
- selfhttps://access.redhat.com/errata/RHSA-2024:8418
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2292787
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2296413
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2317467
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_8418.json