RHSA-2024:6209MediumCVSS 7.5

Red Hat Security Advisory: Red Hat OpenShift Service Mesh Containers for 2.4.10 security update

Published
September 3, 2024
Last Modified
June 2, 2026

🔗 CVE IDs covered (5)

📋 Description

CVE-2024-28180 — jose-go: improper handling of highly compressed data CVE-2024-39338 — axios: axios: Server-Side Request Forgery CVE-2024-42459 — elliptic: nodejs/elliptic: EDDSA signature malleability due to missing signature length check CVE-2024-42460 — elliptic: nodejs/elliptic: ECDSA signature malleability due to missing checks CVE-2024-42461 — elliptic: nodejs/elliptic: ECDSA implementation malleability due to BER-enconded signatures being allowed

🔗 References (3)