VDB
CVE-2024-37298
CVE-2024-37298
PUBLISHED
Es existiert eine Schwachstelle in Podman. Im gorilla/schema Package kommt es aufgrund zu sparsamer Slice-Deserialisierung zu einer Überlastung des Speichers. Ein entfernter, anonymer Angreifer kann diese Schwachstelle ausnutzen, um einen Denial of Service zu verursachen.
EPSS 0.27% · 50.3th percentile
Risk Scores
EPSS Score
0.27%
50.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Oracle Linux | |
| RESF | RESF Rocky Linux | |
| Red Hat | Red Hat OpenShift Container Platform <4.12.63 | |
| Red Hat | Red Hat Enterprise Linux | |
| Open Source | Open Source Podman | |
| Red Hat | Red Hat Enterprise Linux 9 | |
| Red Hat | Red Hat Enterprise Linux Advanced Cluster Security for Kubernetes 4 |
Timeline
- Jan 21, 1970 Security Advisory
- Jul 1, 2024 CVE Published
- Jul 2, 2024 EPSS Score
- Jul 24, 2024 EPSS Score
- Aug 15, 2024 EPSS Score
- Sep 7, 2024 EPSS Score
- Sep 29, 2024 EPSS Score
- Oct 4, 2024 Coalition ESS Score
- Oct 21, 2024 EPSS Score
- Nov 12, 2024 EPSS Score
- Dec 6, 2024 EPSS Score
- Jan 19, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-1709.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-1709 advisory
- https://access.redhat.com/errata/RHSA-2024:4825 advisory
- https://access.redhat.com/errata/RHSA-2024:4702 advisory
- https://access.redhat.com/errata/RHSA-2024:4858 advisory
- https://access.redhat.com/errata/RHSA-2024:4848 advisory
- https://access.redhat.com/errata/RHSA-2024:4963 advisory
- https://access.redhat.com/errata/RHSA-2024:5258 advisory
- https://linux.oracle.com/errata/ELSA-2024-5258.html advisory
- https://access.redhat.com/errata/RHSA-2024:5202 advisory
- https://access.redhat.com/errata/RHSA-2024:5634 advisory
- https://errata.build.resf.org/RLSA-2024:5258 advisory
- https://access.redhat.com/errata/RHSA-2024:6054 advisory
- https://access.redhat.com/errata/RHSA-2024:6194 advisory
- https://linux.oracle.com/errata/ELSA-2024-6194.html advisory