RHSA-2024:0728: Moderate: Logging Subsystem 5.8.3 - Red Hat OpenShift
Logging Subsystem 5.8.3 - Red Hat OpenShift<br>Security Fix(es):<br><li> golang: net/http/internal: Denial of Service (DoS) via Resource Consumption via HTTP requests (CVE-2023-39326)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Other sources
Moderate: Logging Subsystem 5.8.3 - Red Hat OpenShift
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:0728?
The severity of RHSA-2024:0728 is critical due to its potential for Denial of Service (DoS) via resource consumption.
How do I fix RHSA-2024:0728?
To fix RHSA-2024:0728, apply the latest security updates for the affected versions of the Logging Subsystem for Red Hat OpenShift.
Which systems are affected by RHSA-2024:0728?
RHSA-2024:0728 affects the Logging Subsystem for Red Hat OpenShift across multiple architectures including IBM Power, ARM 64, and IBM Z.
What is CVE-2023-39326 in relation to RHSA-2024:0728?
CVE-2023-39326 is the specific vulnerability that allows for Denial of Service via resource consumption within the net/http/internal package.
Is RHSA-2024:0728 relevant for my OpenShift deployment?
If you are using any version of the Logging Subsystem for Red Hat OpenShift, then RHSA-2024:0728 is relevant and you should take action.