RHSA-2024:4891: Important: Errata Advisory for Red Hat OpenShift GitOps v1.13.1 security update
Errata Advisory for Red Hat OpenShift GitOps v1.13.1.Security Fix(es): openshift-gitops-argocd-container: Unauthenticated Denial of Service Vulnerability via /api/webhook Endpoint in Argo CD gitops-1.13 For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.Bug Fix(es): In argoCD Version 2.11.3 webhook api endpoint is not working for Bitbucket and Azure DevOps
Other sources
Important: Errata Advisory for Red Hat OpenShift GitOps v1.13.1 security update
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:4891?
The severity of RHSA-2024:4891 is classified as important due to the potential for unauthenticated denial of service.
How do I fix RHSA-2024:4891?
To fix RHSA-2024:4891, update the affected Red Hat OpenShift GitOps to the latest patched version.
What vulnerability is addressed in RHSA-2024:4891?
RHSA-2024:4891 addresses an unauthenticated denial of service vulnerability via the /api/webhook endpoint in Argo CD.
Which products are affected by RHSA-2024:4891?
The affected products include Red Hat OpenShift GitOps for various architectures including IBM Power, ARM 64, and IBM Z.
When was RHSA-2024:4891 released?
RHSA-2024:4891 was released in response to the identified security vulnerabilities as part of regular security updates.