First published: Tue May 28 2024(Updated: )
Errata Advisory for Red Hat OpenShift GitOps v1.10.6<br>Security Fix(es):<br><li> CVE-2024-31989 argocd: unprivileged pod in a different namespace on the same cluster could connect to the Redis server on port 6379.</li> For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Red Hat OpenShift GitOps for IBM Power, little endian | ||
Red Hat Red Hat OpenShift GitOps for IBM Z and LinuxONE | ||
Red Hat Red Hat OpenShift GitOps | ||
Red Hat Red Hat OpenShift GitOps for ARM 64 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
RHSA-2024:3369 has been classified with a severity level of important.
The vulnerability in RHSA-2024:3369 allows an unprivileged pod in a different namespace to connect to the Redis server on port 6379.
To fix RHSA-2024:3369, update your Red Hat OpenShift GitOps to the patched version that addresses this vulnerability.
RHSA-2024:3369 affects Red Hat OpenShift GitOps versions across multiple platforms including IBM Power, IBM Z, and ARM 64.
The CVE associated with RHSA-2024:3369 is CVE-2024-31989.