RHSA-2025:1053HighCVSS 7.5
Red Hat Security Advisory: Red Hat OpenShift Service Mesh Containers for 2.6.5
🔗 CVE IDs covered (2)
📋 Description
CVE-2024-45338 — golang.org/x/net/html: Non-linear parsing of case-insensitive content in golang.org/x/net/html CVE-2024-53270 — envoy: HTTP/1: sending overload crashes when the request is reset beforehand in envoy
🔗 References (6)
- selfhttps://access.redhat.com/errata/RHSA-2025:1053
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2333091
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2333122
- externalhttps://issues.redhat.com/browse/OSSM-8608
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_1053.json