First published: Thu Jun 15 2023(Updated: )
The Migration Toolkit for Containers (MTC) enables you to migrate Kubernetes resources, persistent volume data, and internal container images between OpenShift Container Platform clusters, using the MTC web console or the Kubernetes API.<br>Security Fix(es) from Bugzilla:<br><li> golang: html/template: improper handling of JavaScript whitespace (CVE-2023-24540)</li> <li> golang: net/http, net/textproto: denial of service from excessive memory allocation (CVE-2023-24534)</li> <li> golang: net/http, net/textproto, mime/multipart: denial of service from excessive resource consumption (CVE-2023-24536)</li> <li> golang: go/parser: Infinite loop in parsing (CVE-2023-24537)</li> <li> golang: html/template: backticks not treated as string delimiters (CVE-2023-24538)</li> For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Migration Toolkit |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2023:3624 is categorized as important.
To fix RHSA-2023:3624, it is recommended to update Red Hat Migration Toolkit for Containers to a patched version.
RHSA-2023:3624 addresses multiple security vulnerabilities identified in the Migration Toolkit for Containers.
RHSA-2023:3624 affects users of the Red Hat Migration Toolkit for Containers.
RHSA-2023:3624 was released in September 2023.