VDB
RHSA-2024%3A8317
RHSA-2024%3A8317
PUBLISHED
CVSS 5.900000095367432 MEDIUM
A flaw was found in Go. The net/http module mishandles specific server responses from HTTP/1.1 client requests. This issue may render a connection invalid and cause a denial of service.
Risk Scores
CVSS 3.1
5.900000095367432
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | openshift-logging/eventrouter-rhel9@sha256:f6e7266eeee58b05ef99f1f51a322e7f23227bca7a755c2f7fbdb4b38a62f3f0_amd64 as a component of RHOL 5.8 for RHEL 9 | * |
| Red Hat | openshift-logging/fluentd-rhel9@sha256:73971be880c0bb3c73ec49af9fb8c21e2334f0e98d4ba6e968bcc9066debc758_amd64 as a component of RHOL 5.8 for RHEL 9 | openshift-logging/fluentd-rhel9@sha256:73971be880c0bb3c73ec49af9fb8c21e2334f0e98d4ba6e968bcc9066debc758_amd64 |
| Red Hat | openshift-logging/logging-view-plugin-rhel9@sha256:afec3cd08cc49f121291cafee5da84f8ae06aca091c1e7fec027a608f2590fd8_amd64 as a component of RHOL 5.8 for RHEL 9 | openshift-logging/logging-view-plugin-rhel9@sha256:afec3cd08cc49f121291cafee5da84f8ae06aca091c1e7fec027a608f2590fd8_amd64 |
| Red Hat | openshift-logging/logging-curator5-rhel9@sha256:2935c7531e0826c498cb771994938eab70556a58988e8e76c4349cf234f41c8b_ppc64le as a component of RHOL 5.8 for RHEL 9 | openshift-logging/logging-curator5-rhel9@sha256:2935c7531e0826c498cb771994938eab70556a58988e8e76c4349cf234f41c8b_ppc64le |
| Red Hat | openshift-logging/log-file-metric-exporter-rhel9@sha256:49c069fa5107aebae3eaf458ee4657664eba201345f3ae61d6d21d448e77c13b_s390x as a component of RHOL 5.8 for RHEL 9 | openshift-logging/log-file-metric-exporter-rhel9@sha256:49c069fa5107aebae3eaf458ee4657664eba201345f3ae61d6d21d448e77c13b_s390x |
| Red Hat | openshift-logging/eventrouter-rhel9@sha256:7f242a1ef567063025ed69e5af60e314a8b6b9dd5546d9d2bd6c630d13ff6466_s390x as a component of RHOL 5.8 for RHEL 9 | openshift-logging/eventrouter-rhel9@sha256:7f242a1ef567063025ed69e5af60e314a8b6b9dd5546d9d2bd6c630d13ff6466_s390x |
| Red Hat | openshift-logging/opa-openshift-rhel9@sha256:0b85582548a9d3e9bde762ed654ddd34ef322e2167ecf68afce2359e2094d71e_arm64 as a component of RHOL 5.8 for RHEL 9 | openshift-logging/opa-openshift-rhel9@sha256:0b85582548a9d3e9bde762ed654ddd34ef322e2167ecf68afce2359e2094d71e_arm64 |
| Red Hat | openshift-logging/logging-loki-rhel9@sha256:ef02bc51e4551f880ffb127e8bb4936ea93fc49dfe12eb791fec114284f7517f_s390x as a component of RHOL 5.8 for RHEL 9 | openshift-logging/logging-loki-rhel9@sha256:ef02bc51e4551f880ffb127e8bb4936ea93fc49dfe12eb791fec114284f7517f_s390x |
| Red Hat | openshift-logging/fluentd-rhel9@sha256:314e06b9c8cdffc5c39bef7006a5d8841350d2a6ab49f3f33542639177863b5c_ppc64le as a component of RHOL 5.8 for RHEL 9 | openshift-logging/fluentd-rhel9@sha256:314e06b9c8cdffc5c39bef7006a5d8841350d2a6ab49f3f33542639177863b5c_ppc64le |
| Red Hat | openshift-logging/loki-rhel9-operator@sha256:ee37fbe83b3b704837616e4beab4f7032af0ce887b8228a96044e0df169ffa21_amd64 as a component of RHOL 5.8 for RHEL 9 | openshift-logging/loki-rhel9-operator@sha256:ee37fbe83b3b704837616e4beab4f7032af0ce887b8228a96044e0df169ffa21_amd64 |
| Red Hat | openshift-logging/vector-rhel9@sha256:ce1d7dcacd1d171d9fc76232ae1a1c9fcb5c798e9d76f1d4ae1054a57b22e571_s390x as a component of RHOL 5.8 for RHEL 9 | * |
| Red Hat | openshift-logging/logging-loki-rhel9@sha256:fbbdf47b90f16af26d077a07dd5574420ea26a2db1f328db2c56820766137435_arm64 as a component of RHOL 5.8 for RHEL 9 | openshift-logging/logging-loki-rhel9@sha256:fbbdf47b90f16af26d077a07dd5574420ea26a2db1f328db2c56820766137435_arm64 |
| Red Hat | openshift-logging/cluster-logging-rhel9-operator@sha256:84721917aea4acdd4060fff822f475c1ff3bf47e6992525a0bd9bf800aab0ce8_s390x as a component of RHOL 5.8 for RHEL 9 | openshift-logging/cluster-logging-rhel9-operator@sha256:84721917aea4acdd4060fff822f475c1ff3bf47e6992525a0bd9bf800aab0ce8_s390x |
| Red Hat | openshift-logging/fluentd-rhel9@sha256:d1c5b1b24293f26593cda0f4113fbc08fa74c71d186027715e224b34f5750572_arm64 as a component of RHOL 5.8 for RHEL 9 | openshift-logging/fluentd-rhel9@sha256:d1c5b1b24293f26593cda0f4113fbc08fa74c71d186027715e224b34f5750572_arm64 |
| Red Hat | openshift-logging/log-file-metric-exporter-rhel9@sha256:55dcb6828233c312ff9cc190718da3947ba7e7b10c8bd64750607e6728bf149e_ppc64le as a component of RHOL 5.8 for RHEL 9 | openshift-logging/log-file-metric-exporter-rhel9@sha256:55dcb6828233c312ff9cc190718da3947ba7e7b10c8bd64750607e6728bf149e_ppc64le |
| Red Hat | openshift-logging/cluster-logging-rhel9-operator@sha256:430e473beee02b34646293d28363cd8ff13294ea00807c0285ac6a25b88c45a9_amd64 as a component of RHOL 5.8 for RHEL 9 | openshift-logging/cluster-logging-rhel9-operator@sha256:430e473beee02b34646293d28363cd8ff13294ea00807c0285ac6a25b88c45a9_amd64 |
| Red Hat | openshift-logging/vector-rhel9@sha256:a09c1a4ed2ec0d7e13abeb7e5115ca630656d888bc2c12a7405dac2add49dd69_arm64 as a component of RHOL 5.8 for RHEL 9 | openshift-logging/vector-rhel9@sha256:a09c1a4ed2ec0d7e13abeb7e5115ca630656d888bc2c12a7405dac2add49dd69_arm64 |
| Red Hat | openshift-logging/log-file-metric-exporter-rhel9@sha256:afcfd4ef2cead4cef77634c68cafb6f0eea4007618193caed91f36a4e692d6da_amd64 as a component of RHOL 5.8 for RHEL 9 | openshift-logging/log-file-metric-exporter-rhel9@sha256:afcfd4ef2cead4cef77634c68cafb6f0eea4007618193caed91f36a4e692d6da_amd64 |
| Red Hat | openshift-logging/opa-openshift-rhel9@sha256:eff170f0076c2b0f88af5a74dbc22d47618012a1e815af3ff109a226f50512d6_amd64 as a component of RHOL 5.8 for RHEL 9 | * |
| Red Hat | openshift-logging/fluentd-rhel9@sha256:d1c5b1b24293f26593cda0f4113fbc08fa74c71d186027715e224b34f5750572_arm64 as a component of RHOL 5.8 for RHEL 9 | openshift-logging/fluentd-rhel9@sha256:d1c5b1b24293f26593cda0f4113fbc08fa74c71d186027715e224b34f5750572_arm64 |
…and 98 more
Timeline
- Oct 23, 2024 CVE Published
- Apr 25, 2026 Distribution Patch
- Apr 25, 2026 Distribution Patch
- Apr 25, 2026 Security Advisory
- Apr 25, 2026 Security Advisory
- Apr 25, 2026 Security Advisory
- Apr 25, 2026 Security Advisory
- Apr 25, 2026 Security Advisory
- Apr 30, 2026 CVE Updated
References
- https://access.redhat.com/errata/RHSA-2024:8317 advisory
- https://access.redhat.com/security/updates/classification/#important advisory
- https://issues.redhat.com/browse/LOG-4671 advisory
- https://issues.redhat.com/browse/LOG-6182 advisory
- https://issues.redhat.com/browse/LOG-6184 advisory
- https://issues.redhat.com/browse/LOG-6266 advisory
- https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_8317.json advisory
- https://access.redhat.com/security/cve/CVE-2024-24791 advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2295310 issue
- https://www.cve.org/CVERecord?id=CVE-2024-24791 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2024-24791 advisory
- https://go.dev/cl/591255 advisory
- https://go.dev/issue/67555 advisory
- https://groups.google.com/g/golang-dev/c/t0rK-qHBqzY/m/6MMoAZkMAgAJ advisory
- https://access.redhat.com/security/cve/CVE-2024-34155 advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2310527 issue
- https://www.cve.org/CVERecord?id=CVE-2024-34155 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2024-34155 advisory
- https://go.dev/cl/611238 advisory
- https://go.dev/issue/69138 advisory
…and 16 more