RHSA-2024:4697: Moderate: Red Hat build of Cryostat security update
An update is now available for the Red Hat build of Cryostat 3 on RHEL 8.Security Fix(es): golang: net: malformed DNS message can cause infinite loop (CVE-2024-24788) golang: net/netip: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses (CVE-2024-24790) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Other sources
Moderate: Red Hat build of Cryostat security update
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:4697?
The severity of RHSA-2024:4697 is critical due to the potential for denial of service caused by malformed DNS messages.
How do I fix RHSA-2024:4697?
To fix RHSA-2024:4697, update your Red Hat Cryostat installation to the latest version provided in the advisory.
What vulnerabilities are addressed in RHSA-2024:4697?
RHSA-2024:4697 addresses vulnerabilities related to malformed DNS messages and unexpected behavior in net/netip libraries in Golang.
Who is affected by RHSA-2024:4697?
RHSA-2024:4697 affects users of the Red Hat build of Cryostat 3 on RHEL 8.
When was RHSA-2024:4697 released?
RHSA-2024:4697 was released to address critical security flaws that could impact the stability of network operations.