RHSA-2023:5971: Important: Red Hat OpenStack Platform 17.1.1 (director-operator) security update
Important: Red Hat OpenStack Platform 17.1.1 (director-operator) security update
Other sources
Security Fix(es): golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487) (CVE-2023-39325) HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack) (CVE-2023-44487) golang: crypto/tls: slow verification of certificate chains containing large RSA keys (CVE-2023-29409) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:5971?
The severity of RHSA-2023:5971 is high, with a severity value of 7.
What software is affected by RHSA-2023:5971?
Red Hat OpenStack is the affected software by RHSA-2023:5971.
Where can I find more information about RHSA-2023:5971?
You can find more information about RHSA-2023:5971 on the Red Hat Bugzilla page.
How do I fix the vulnerability identified in RHSA-2023:5971?
To fix the vulnerability identified in RHSA-2023:5971, apply the provided security update from Red Hat.
Are there any known exploits for RHSA-2023:5971?
There are no known exploits for RHSA-2023:5971 at this time.