RHSA-2024:10775: Moderate: ACS 4.6 enhancement and security update
Moderate: ACS 4.6 enhancement and security update
Other sources
This release of RHACS 4.6 provides these new features:<br><li> Support for ARM architecture in secured clusters (Technology Preview)</li> <li> Certifications for Red Hat Advanced Cluster Security Cloud Service</li> <li> Compliance reporting (Technology Preview)</li> <li> API documentation available publicly</li> <li> Visualizing external entities in the network graph (Technology Preview)</li> <li> Microsoft Sentinel notifier</li> <li> Support for backups using non-AWS S3 compatible providers</li> <li> Support for policy as code (Technology Preview)</li> <li> Scanner V4 use of CSAF-VEX for vulnerability data</li> <li> Scanner V4 support for RHCOS (Technology Preview)</li> <li> Vulnerability Management page updates</li> It includes fixes for the following security issues:<br><li> micromatch: vulnerable to Regular Expression Denial of Service (CVE-2024-4067).</li> <li> golang: archive/zip: Incorrect handling of certain ZIP files (CVE-2024-24789).</li> <li> golang: net/netip: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses (CVE-2024-24790).</li> <li> nodejs-async: Regular expression denial of service while parsing function in autoinject (CVE-2024-39249).</li> For more information, see the release note link in "References."
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:10775?
The severity of RHSA-2024:10775 is classified as moderate.
How do I fix RHSA-2024:10775?
To fix RHSA-2024:10775, you should apply the latest updates provided by Red Hat for your affected software versions.
Which versions of software are affected by RHSA-2024:10775?
RHSA-2024:10775 affects Red Hat Advanced Cluster Security for Kubernetes and its variations for ARM, IBM Z, and IBM Power.
What new features are included in RHSA-2024:10775?
RHSA-2024:10775 includes support for ARM architecture in secured clusters and certifications for Red Hat Advanced Cluster Security Cloud Service.
Is there any compliance enhancement in RHSA-2024:10775?
Yes, RHSA-2024:10775 includes compliance enhancements as part of the security update.