RHSA-2023:6817HighCVSS 7.5

Red Hat Security Advisory: OpenShift Virtualization 4.14.0 Images security and bug fix update

Published
November 8, 2023
Last Modified
May 30, 2026

🔗 CVE IDs covered (7)

📋 Description

CVE-2021-20329 — mongo-go-driver: specific cstrings input may not be properly validated CVE-2022-41724 — golang: crypto/tls: large handshake records may cause panics CVE-2022-41725 — golang: net/http, mime/multipart: denial of service from excessive resource consumption CVE-2023-25153 — containerd: OCI image importer memory exhaustion CVE-2023-25173 — containerd: Supplementary groups are not set up properly CVE-2023-39325 — golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487) CVE-2023-44487 — HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

🔗 References (319)