First published: Mon Sep 09 2024(Updated: )
Downstream release (3.3.1) of the koku-metrics-operator. See release notes for features delivered as part of this release. Release notes can be found at: <a href="https://github.com/project-koku/koku-metrics-operator/releases/tag/v3.3.1-downstream" target="_blank">https://github.com/project-koku/koku-metrics-operator/releases/tag/v3.3.1-downstream</a> Security Fix(es):<br><li> golang: net: malformed DNS message can cause infinite loop (CVE-2024-24788)</li> <li> golang: net/netip: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses (CVE-2024-24790)</li> <li> golang: net/<a href="http:" target="_blank">http:</a> Denial of service due to improper 100-continue handling in net/http (CVE-2024-24791)</li> For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Cost Management |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.