VDB

RHSA-2024%3A1668

RHSA-2024%3A1668 PUBLISHED CVSS 7.5 HIGH

A vulnerability was discovered with the implementation of the HTTP/2 protocol in the Go programming language. There were insufficient limitations on the amount of CONTINUATION frames sent within a single stream. An attacker could potentially exploit this to cause a Denial of Service (DoS) attack.

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected Products

VendorProductVersions
Red Hatopenshift4/ose-hyperkube-rhel9@sha256:7ea13c72363c40ff8d87625a66f8913f2f43accabac67614e922eea26b3b70d6_arm64 as a component of Red Hat OpenShift Container Platform 4.15openshift4/ose-hyperkube-rhel9@sha256:7ea13c72363c40ff8d87625a66f8913f2f43accabac67614e922eea26b3b70d6_arm64
Red Hatopenshift4/ose-pod-rhel9@sha256:0693c62777e309588603dc9b20eb1df71b577fb203238ee8939b46da61c295da_arm64 as a component of Red Hat OpenShift Container Platform 4.15openshift4/ose-pod-rhel9@sha256:0693c62777e309588603dc9b20eb1df71b577fb203238ee8939b46da61c295da_arm64
Red Hatopenshift4/ose-pod-rhel9@sha256:ac97982e845413b2b7377171d1b4c85d2b2cfda174e8251e3049d4843cea40e1_amd64 as a component of Red Hat OpenShift Container Platform 4.15openshift4/ose-pod-rhel9@sha256:ac97982e845413b2b7377171d1b4c85d2b2cfda174e8251e3049d4843cea40e1_amd64
Red Hatopenshift4/ose-pod-rhel9@sha256:5fb37cf023c5048878dad6e7020ab32b623047d98d779ef28ec62a0e29cb5e7c_s390x as a component of Red Hat OpenShift Container Platform 4.15openshift4/ose-pod-rhel9@sha256:5fb37cf023c5048878dad6e7020ab32b623047d98d779ef28ec62a0e29cb5e7c_s390x
Red Hatopenshift4/ose-hyperkube-rhel9@sha256:dbb6ec887da8c17920f8ceac12c9c10c77f9c77519f3c61fb4c3154d8424db32_amd64 as a component of Red Hat OpenShift Container Platform 4.15openshift4/ose-hyperkube-rhel9@sha256:dbb6ec887da8c17920f8ceac12c9c10c77f9c77519f3c61fb4c3154d8424db32_amd64
Red Hatopenshift4/ose-pod-rhel9@sha256:69389bbc021900c662f1a27a62fd2a34977b991bd8fed863deb4fac1b24eef57_ppc64le as a component of Red Hat OpenShift Container Platform 4.15openshift4/ose-pod-rhel9@sha256:69389bbc021900c662f1a27a62fd2a34977b991bd8fed863deb4fac1b24eef57_ppc64le
Red Hatopenshift4/ose-hyperkube-rhel9@sha256:043262e39d71e438c15e6f14464e00313cccf0272c566e4a0455974902c0059b_ppc64le as a component of Red Hat OpenShift Container Platform 4.15*
Red Hatopenshift4/ose-hyperkube-rhel9@sha256:31b932ca8708d890852f482e85f56cc312adc2f58c5e1d6c4c6beecd557a4e4c_s390x as a component of Red Hat OpenShift Container Platform 4.15openshift4/ose-hyperkube-rhel9@sha256:31b932ca8708d890852f482e85f56cc312adc2f58c5e1d6c4c6beecd557a4e4c_s390x

Timeline

  • Apr 8, 2024 CVE Published
  • Apr 25, 2026 CVE Updated
  • Apr 25, 2026 Distribution Patch
  • Apr 25, 2026 Distribution Patch
  • Apr 25, 2026 Security Advisory
  • Apr 25, 2026 Security Advisory
  • Apr 25, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›