RHSA-2024:0298: Critical: Red Hat Advanced Cluster Management 2.9.2 security and bug fix container updates
Critical: Red Hat Advanced Cluster Management 2.9.2 security and bug fix container updates
Other sources
Red Hat Advanced Cluster Management for Kubernetes 2.9.2 images<br>Red Hat Advanced Cluster Management for Kubernetes provides the<br>capabilities to address common challenges that administrators and site<br>reliability engineers face as they work across a range of public and<br>private cloud environments. Clusters and applications are all visible and<br>managed from a single console—with security policy built in.<br>Jira issues addressed:<br>ACM-8456: 'Search' feature on logs page is not working<br>ACM-8857: credentials restore file is executed after resources restore<br>ACM-8966: oc get policy still returns NonCompliant 10 minutes after deleting the certificate and secret<br>ACM-9094: Configuration Policy controller unexpectedly gets taken out of uninstall mode<br>Security fix(es):<br>CVE-2023-49568 go-git: Maliciously crafted Git server replies can cause DoS on go-git clients<br>CVE-2023-49569 go-git: Maliciously crafted Git server replies can lead to path traversal and RCE on go-git clients
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:0298?
The severity of RHSA-2024:0298 is classified as critical.
How do I fix RHSA-2024:0298?
To fix RHSA-2024:0298, update Red Hat Advanced Cluster Management for Kubernetes to version 2.9.2 or later.
What vulnerabilities are addressed in RHSA-2024:0298?
RHSA-2024:0298 addresses various security and bug fix issues in the Red Hat Advanced Cluster Management for Kubernetes.
Which software versions are affected by RHSA-2024:0298?
RHSA-2024:0298 affects Red Hat Advanced Cluster Management for Kubernetes versions prior to 2.9.2.
Is there a workaround for RHSA-2024:0298?
No specific workaround is mentioned for RHSA-2024:0298; upgrading is the recommended approach.