RHSA-2024:0190: Moderate: Red Hat OpenStack Platform 17.1 (GitPython) security update
GitPython is a python library used to interact with Git repositories.<br>Security Fix(es):<br><li> Blind local file inclusion (CVE-2023-41040)</li> For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE<br>page listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:0190?
The severity of RHSA-2024:0190 is determined by the CVSS score assigned to the blind local file inclusion vulnerability, CVE-2023-41040.
How do I fix RHSA-2024:0190?
To fix RHSA-2024:0190, update to the latest patched version of GitPython as recommended by the vendor.
What is CVE-2023-41040 in relation to RHSA-2024:0190?
CVE-2023-41040 is a vulnerability that allows for blind local file inclusion in GitPython.
Which software is affected by RHSA-2024:0190?
RHSA-2024:0190 affects GitPython and the Red Hat OpenStack Platform.
What are the consequences of not addressing RHSA-2024:0190?
Failing to address RHSA-2024:0190 may lead to unauthorized access to sensitive files within the system.