First published: Mon Oct 14 2024(Updated: )
Cluster Observability Operator<br>Security Fix(es):<br><li> coo-prometheus-container: go-retryable<a href="http:" target="_blank">http:</a> url might write sensitive information to log file [coo-0] (CVE-2024-6104)</li> <li> coo-thanos-container: golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON [coo-0] (CVE-2024-24786)</li> For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE page(s)listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Cluster Observability Operator |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.