RHSA-2024:10665: Low: ACS 4.4 enhancement and security update
Published Dec 2, 2024
·Updated
Low: ACS 4.4 enhancement and security update
Other sources
This release of ACS 4.4.7 provides the following security fix:<br><li> cross-spawn: Regular expression denial of service (CVE-2024-21538)</li>
— Red Hat
Affected Software
3 affected components
Red Hat Red Hat Advanced Cluster Security for Kubernetes
Red Hat Red Hat Advanced Cluster Security for Kubernetes for IBM Z and LinuxONE
Red Hat Red Hat Advanced Cluster Security for Kubernetes for IBM Power, little endian
Remediation
Event History
Dec 2, 2024
Advisory Published
via Red Hat·11:20 AM
Dec 22, 2024
Advisory Published
via Red Hat·12:55 PM
Data Sourced
via Red Hat·12:55 PM
RemedyDescriptionAffected Software
Frequently Asked Questions
1
What is the severity of RHSA-2024:10665?
The severity of RHSA-2024:10665 is classified as low.
2
How do I fix RHSA-2024:10665?
To fix RHSA-2024:10665, users should upgrade to Advanced Cluster Security version 4.4.7 or higher.
3
What does RHSA-2024:10665 address?
RHSA-2024:10665 addresses a cross-spawn regular expression denial of service vulnerability (CVE-2024-21538).
4
Which products are affected by RHSA-2024:10665?
RHSA-2024:10665 affects Red Hat Advanced Cluster Security for Kubernetes and its variations for IBM Z, LinuxONE, and IBM Power.
5
Is there a workaround for RHSA-2024:10665?
There are no specific workarounds recommended for RHSA-2024:10665; upgrading to the patched version is advised.