RHSA-2024:0735CriticalCVSS 8.1
Red Hat Security Advisory: OpenShift Container Platform 4.14.12 bug fix and security update
🔗 CVE IDs covered (3)
📋 Description
CVE-2022-21708 — graphql-go: Denial of service via stack overflow panics CVE-2023-49568 — go-git: Maliciously crafted Git server replies can cause DoS on go-git clients CVE-2023-49569 — go-git: Maliciously crafted Git server replies can lead to path traversal and RCE on go-git clients
🔗 References (28)
- selfhttps://access.redhat.com/errata/RHSA-2024:0735
- externalhttps://access.redhat.com/security/updates/classification/#critical
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2045014
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2258143
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2258165
- externalhttps://issues.redhat.com/browse/OCPBUGS-20180
- externalhttps://issues.redhat.com/browse/OCPBUGS-20547
- externalhttps://issues.redhat.com/browse/OCPBUGS-26526
- externalhttps://issues.redhat.com/browse/OCPBUGS-26527
- externalhttps://issues.redhat.com/browse/OCPBUGS-27072
- externalhttps://issues.redhat.com/browse/OCPBUGS-27157
- externalhttps://issues.redhat.com/browse/OCPBUGS-27419
- externalhttps://issues.redhat.com/browse/OCPBUGS-27773
- externalhttps://issues.redhat.com/browse/OCPBUGS-28238
- externalhttps://issues.redhat.com/browse/OCPBUGS-28379
- externalhttps://issues.redhat.com/browse/OCPBUGS-28384
- externalhttps://issues.redhat.com/browse/OCPBUGS-28789
- externalhttps://issues.redhat.com/browse/OCPBUGS-28823
- externalhttps://issues.redhat.com/browse/OCPBUGS-28871
- externalhttps://issues.redhat.com/browse/OCPBUGS-28949
- externalhttps://issues.redhat.com/browse/OCPBUGS-28950
- externalhttps://issues.redhat.com/browse/OCPBUGS-28951
- externalhttps://issues.redhat.com/browse/OCPBUGS-28952
- externalhttps://issues.redhat.com/browse/OCPBUGS-28957
- externalhttps://issues.redhat.com/browse/OCPBUGS-29030
- externalhttps://issues.redhat.com/browse/OCPBUGS-29034
- externalhttps://issues.redhat.com/browse/OCPBUGS-7262
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_0735.json