VDB

BDU%3A2024-04494

BDU%3A2024-04494 PUBLISHED CVSS 7.5 HIGH

Уязвимость программного средства для сбора информации о состоянии и производительности приложений, работающих на платформе OpenShift, OpenShift Telemeter, связанная с обходом аутентификации посредством спуфинга, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Affected Products

VendorProductVersions
Red HatRed Hat OpenShift Container Platform 4.16v4.16.0-202406200537.p0.gc1ecd10.assembly.stream.el9
Red HatRed Hat OpenShift Container Platform 4.14v4.14.0-202407021509.p0.g1f72681.assembly.stream.el8
Red HatRed Hat OpenShift Container Platform 4.15v4.15.0-202406200537.p0.g14489f7.assembly.stream.el9
Red HatRed Hat OpenShift Container Platform 4.13v4.13.0-202407081338.p0.g0634a6d.assembly.stream.el8
Red HatLogging Subsystem for Red Hat OpenShift
Red HatRed Hat OpenShift Container Platform 4.12v4.12.0-202408071159.p0.gc9592de.assembly.stream.el8
Red Hat Inc., Google IncRed Hat OpenShift Container Platform, Red Hat OpenShift distributed tracing, Kubernetes
Red HatRed Hat OpenShift distributed tracing 2
Red HatRed Hat OpenShift distributed tracing 3
4.16

Timeline

  • Jun 5, 2024 CVE Published
  • Jun 13, 2024 CVE Updated
  • Aug 30, 2026 Distribution Patch
  • Aug 30, 2026 Security Advisory
  • Aug 30, 2026 Distribution Patch
  • Aug 30, 2026 Distribution Patch
  • Aug 30, 2026 Distribution Patch
  • Aug 30, 2026 Distribution Patch
  • Aug 30, 2026 Security Advisory
  • Aug 30, 2026 Security Advisory
  • Aug 30, 2026 Security Advisory
  • Aug 30, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›