RHSA-2024:8581HighCVSS 7.5
Red Hat Security Advisory: Errata Advisory for Red Hat OpenShift GitOps v1.13.2 security update
🔗 CVE IDs covered (6)
📋 Description
CVE-2023-26115 — word-wrap: ReDoS CVE-2024-43796 — express: Improper Input Handling in Express Redirects CVE-2024-43799 — send: Code Execution Vulnerability in Send Library CVE-2024-43800 — serve-static: Improper Sanitization in serve-static CVE-2024-45296 — path-to-regexp: Backtracking regular expressions cause ReDoS CVE-2024-45590 — body-parser: Denial of Service Vulnerability in body-parser
🔗 References (8)
- selfhttps://access.redhat.com/errata/RHSA-2024:8581
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://issues.redhat.com/browse/GITOPS-4234
- externalhttps://issues.redhat.com/browse/GITOPS-4358
- externalhttps://issues.redhat.com/browse/GITOPS-5081
- externalhttps://issues.redhat.com/browse/GITOPS-5087
- externalhttps://issues.redhat.com/browse/GITOPS-5640
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_8581.json