RHSA-2024:3369: Important: Errata Advisory for Red Hat OpenShift GitOps v1.10.6 security update
Errata Advisory for Red Hat OpenShift GitOps v1.10.6<br>Security Fix(es):<br><li> CVE-2024-31989 argocd: unprivileged pod in a different namespace on the same cluster could connect to the Redis server on port 6379.</li> For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Other sources
Important: Errata Advisory for Red Hat OpenShift GitOps v1.10.6 security update
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:3369?
RHSA-2024:3369 has been classified with a severity level of important.
What is the vulnerability identified in RHSA-2024:3369?
The vulnerability in RHSA-2024:3369 allows an unprivileged pod in a different namespace to connect to the Redis server on port 6379.
How do I fix RHSA-2024:3369?
To fix RHSA-2024:3369, update your Red Hat OpenShift GitOps to the patched version that addresses this vulnerability.
Which products are affected by RHSA-2024:3369?
RHSA-2024:3369 affects Red Hat OpenShift GitOps versions across multiple platforms including IBM Power, IBM Z, and ARM 64.
What is the CVE associated with RHSA-2024:3369?
The CVE associated with RHSA-2024:3369 is CVE-2024-31989.