RHSA-2024:6775: Moderate: Red Hat OpenStack Platform 18.0 (python-webob) security update
Moderate: Red Hat OpenStack Platform 18.0 (python-webob) security update
Other sources
WebOb provides wrappers around the WSGI request environment, and an objectto help create WSGI responses. The objects map much of the specifiedbehavior of HTTP, including header parsing and accessors for other standardparts of the environment.Security Fix(es): WebOb's location header normalization during redirect leads to open redirect (CVE-2024-42353)For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVEpage listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:6775?
RHSA-2024:6775 is classified as a moderate severity security update.
How do I fix RHSA-2024:6775?
To resolve RHSA-2024:6775, you need to update the python-webob and python3-webob packages to version 1.8.7-3.el9.
Which products are affected by RHSA-2024:6775?
RHSA-2024:6775 affects Red Hat OpenStack Services on OpenShift and Red Hat Enterprise Linux for x86_64.
What does the RHSA-2024:6775 update address?
The RHSA-2024:6775 update addresses security vulnerabilities in the WebOb library used for WSGI applications.
How can I determine if my system is vulnerable to RHSA-2024:6775?
You can determine if your system is vulnerable to RHSA-2024:6775 by checking if you are running an affected version of python-webob or python3-webob.