RHSA-2024:1923: Moderate: Migration Toolkit for Runtimes security, bug fix and enhancement update
Migration Toolkit for Runtimes 1.2.5 Images<br>Security Fix(es):<br><li> vertx-core: memory leak when a TCP server is configured with TLS and SNI support (CVE-2024-1300)</li> <li> commons-compress: OutOfMemoryError unpacking broken Pack200 file (CVE-2024-26308)</li> For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE page(s)<br>listed in the References section.
Other sources
Moderate: Migration Toolkit for Runtimes security, bug fix and enhancement update
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:1923?
The severity of RHSA-2024:1923 is critical due to the memory leak and potential OutOfMemoryError vulnerabilities.
How do I fix RHSA-2024:1923?
To fix RHSA-2024:1923, upgrade to the patched version of Red Hat Migration Toolkit for Runtimes.
What vulnerabilities are addressed in RHSA-2024:1923?
RHSA-2024:1923 addresses a memory leak in vertx-core and an OutOfMemoryError in commons-compress.
Which product versions are affected by RHSA-2024:1923?
Red Hat Migration Toolkit for Runtimes version 1.2.5 is affected by RHSA-2024:1923.
What are the implications of not addressing RHSA-2024:1923?
Not addressing RHSA-2024:1923 may lead to service interruptions and resource exhaustion due to the identified vulnerabilities.