First published: Mon Oct 14 2024(Updated: )
Important: Release of OpenShift Serverless Logic 1.34.0 security update & enhancements
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat OpenShift Serverless | ||
Red Hat OpenShift Serverless | ||
Red Hat OpenShift Serverless |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
RHSA-2024:8023 has been classified as an important security update.
To fix RHSA-2024:8023, you should update your OpenShift Serverless deployment to version 1.34.0 or later.
RHSA-2024:8023 addresses Server-Side Request Forgery in axios (CVE-2024-39338) and improper input handling in express.
RHSA-2024:8023 affects Red Hat OpenShift Serverless, Red Hat OpenShift Serverless for ARM, and Red Hat OpenShift Serverless for IBM Power, little endian.
If you cannot update due to compatibility issues, it is recommended to assess the risk and explore temporary mitigations while planning for an eventual update.