RHSA-2025:2449HighCVSS 7.8

Red Hat Security Advisory: OpenShift Container Platform 4.18.4 security update

Published
March 11, 2025
Last Modified
May 26, 2026

🔗 CVE IDs covered (6)

📋 Description

CVE-2024-0406 — mholt/archiver: path traversal vulnerability CVE-2024-9675 — buildah: Buildah allows arbitrary directory mount CVE-2024-24786 — golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON CVE-2024-45338 — golang.org/x/net/html: Non-linear parsing of case-insensitive content in golang.org/x/net/html CVE-2024-50302 — kernel: HID: core: zero-initialize the report buffer CVE-2025-24976 — distribution: Distribution's token authentication allows attacker to inject an untrusted signing key in a JWT

🔗 References (32)