RHSA-2023:6115: Important: OpenShift API for Data Protection security update
Important: OpenShift API for Data Protection security update
Other sources
Security Fix(es): golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487) (CVE-2023-39325) HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack) (CVE-2023-44487) golang: net/http: insufficient sanitization of Host header (CVE-2023-29406) golang: crypto/tls: slow verification of certificate chains containing large RSA keys (CVE-2023-29409) golang: html/template: improper handling of HTML-like comments within script contexts (CVE-2023-39318) golang: html/template: improper handling of special tags within script contexts (CVE-2023-39319) golang: crypto/tls: panic when processing post-handshake message on QUIC connections (CVE-2023-39321) golang: crypto/tls: lack of a limit on buffered post-handshake (CVE-2023-39322) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:6115?
The severity of RHSA-2023:6115 is high.
What is the vulnerability ID for the OpenShift API for Data Protection security update?
The vulnerability ID for the OpenShift API for Data Protection security update is RHSA-2023:6115.
Which vendor is affected by RHSA-2023:6115?
The vendor affected by RHSA-2023:6115 is Red Hat.
Which product is affected by RHSA-2023:6115?
The product affected by RHSA-2023:6115 is OpenShift API for Data Protection.
Where can I find more information about RHSA-2023:6115?
You can find more information about RHSA-2023:6115 at the following URLs: [https://access.redhat.com/errata/RHSA-2023:6115](https://access.redhat.com/errata/RHSA-2023:6115), [https://bugzilla.redhat.com/show_bug.cgi?id=2222167](https://bugzilla.redhat.com/show_bug.cgi?id=2222167), [https://bugzilla.redhat.com/show_bug.cgi?id=2228743](https://bugzilla.redhat.com/show_bug.cgi?id=2228743).