VDB
RHSA-2024:4846
RHSA-2024:4846
PUBLISHED
CVSS 5.900000095367432 MEDIUM
The dnspython stub resolver is vulnerable to a denial of service (DoS) risk if an attacker sends a malicious response forged with the correct address and port before a legitimate one arrives on the UDP port used by dnspython for the query. In such cases, dnspython could either switch to another resolver or abandon the query altogether, potentially leading to service denial for that resolution.
Risk Scores
CVSS 3.1
5.900000095367432
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | openshift4/ose-machine-config-operator@sha256:42c5c2aa93ed869f93601b8ce0b667f34fc75c4da492a46694c97f988dc2190e_amd64 as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | openshift4/ose-ironic-agent-rhel9@sha256:6250f82b8659b04c17a3269eda6355f8ebd4812a48cbe044c10ca1b0f28a3dc7_arm64 as a component of Red Hat OpenShift Container Platform 4.13 | openshift4/ose-ironic-agent-rhel9@sha256:6250f82b8659b04c17a3269eda6355f8ebd4812a48cbe044c10ca1b0f28a3dc7_arm64 |
| Red Hat | openshift4/ose-ironic-agent-rhel9@sha256:99948258aa919e8a293520077e69753bfc3488591c964e8be7d11321287e6e79_amd64 as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | openshift4/ose-ibm-vpc-block-csi-driver-rhel8@sha256:230f4e1552f330570f6e568c55778169724acf42daeb9a0a4a2e3da62e9d9e16_amd64 as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | openshift4/ose-cloud-credential-operator@sha256:5f8a3522b4945882267b8ffdc846e76fde187897987517e45437136d8660a0b0_arm64 as a component of Red Hat OpenShift Container Platform 4.13 | openshift4/ose-cloud-credential-operator@sha256:5f8a3522b4945882267b8ffdc846e76fde187897987517e45437136d8660a0b0_arm64 |
| Red Hat | openshift4/ose-ovn-kubernetes@sha256:3c8ae70f28661716b55806b465244675273d71bcce8ff06d16c0df68e8c51807_arm64 as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | openshift4/ose-insights-rhel8-operator@sha256:fdf5f9f0ded2f510b36fbdc95bec2ccf49933eafdafe60f80896e86924ea86cc_amd64 as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | openshift4/ose-cluster-dns-operator@sha256:d10d616457d31dd7551f4c45ae177fa6701d8fed3ba9cdee87c0493a5b719ece_arm64 as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | openshift4/ose-cluster-image-registry-operator@sha256:c73e40e970cb5715aba4f23e3f736ef0344c1438e7c291fdd6b28101020b28de_s390x as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | openshift4/ose-ibm-vpc-node-label-updater-rhel8@sha256:dc48d135e2f617f8bda9409e057f1c5427886e88d1513cb832a9944d0f0ac460_amd64 as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | openshift4/ose-ovn-kubernetes-rhel9@sha256:3c8ae70f28661716b55806b465244675273d71bcce8ff06d16c0df68e8c51807_arm64 as a component of Red Hat OpenShift Container Platform 4.13 | openshift4/ose-ovn-kubernetes-rhel9@sha256:3c8ae70f28661716b55806b465244675273d71bcce8ff06d16c0df68e8c51807_arm64 |
| Red Hat | openshift4/ose-kube-rbac-proxy@sha256:868ae32ac549c0f84e10d1675f30c6cd19ae8cb88dac3f2bc7278c5f28cc7f99_amd64 as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | openshift4/ose-insights-rhel8-operator@sha256:c954ce14617212a82854dc5d461e55dedfd1c754b638905b11937e4bb912d2b2_arm64 as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | openshift4/ose-agent-installer-node-agent-rhel8@sha256:594a8f1fc1fc6493e91a997fea13354a4d633d5e2d007e5ed449a3b1c83eb248_s390x as a component of Red Hat OpenShift Container Platform 4.13 | openshift4/ose-agent-installer-node-agent-rhel8@sha256:594a8f1fc1fc6493e91a997fea13354a4d633d5e2d007e5ed449a3b1c83eb248_s390x |
| Red Hat | openshift4/ose-agent-installer-api-server-rhel8@sha256:364bad05d2d9cc44ca8f8bc7922c6dc7c84f575e00a32dfdf31482c9ab8642d1_amd64 as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | openshift4/driver-toolkit-rhel9@sha256:e543e5df44872d4c489f6f1d692468cb64368750715bbf8d09512421a0381041_ppc64le as a component of Red Hat OpenShift Container Platform 4.13 | openshift4/driver-toolkit-rhel9@sha256:e543e5df44872d4c489f6f1d692468cb64368750715bbf8d09512421a0381041_ppc64le |
| Red Hat | openshift4/ose-cluster-node-tuning-rhel9-operator@sha256:f8f7a5b27a65b00fd4ca6a22ee206a1f5e307ea05ec81abc0d2e5a55a2a46731_s390x as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | openshift4/ose-kube-rbac-proxy@sha256:1e9f801609e6e2cdf3f346d84efc9170a7c29eef6f3b8131af565cea28b51f17_s390x as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | rhcos@sha256:99e014e3c7501bece41106d7d88e9787c73e83d4e0252e4e356e2db430486f42_s390x as a component of Red Hat OpenShift Container Platform 4.13 | * |
| Red Hat | openshift4/ose-cluster-image-registry-operator@sha256:c73e40e970cb5715aba4f23e3f736ef0344c1438e7c291fdd6b28101020b28de_s390x as a component of Red Hat OpenShift Container Platform 4.13 | openshift4/ose-cluster-image-registry-operator@sha256:c73e40e970cb5715aba4f23e3f736ef0344c1438e7c291fdd6b28101020b28de_s390x |
…and 124 more
Timeline
- Jul 31, 2024 CVE Published
- Apr 25, 2026 Distribution Patch
- Apr 25, 2026 Security Advisory
- Apr 25, 2026 Security Advisory
- Aug 4, 2026 CVE Updated
- Aug 4, 2026 Distribution Patch
- Aug 4, 2026 Security Advisory
References
- https://bugzilla.redhat.com/show_bug.cgi?id=2294000 issue
- https://issues.redhat.com/browse/OCPBUGS-11449 advisory
- https://issues.redhat.com/browse/OCPBUGS-36962 advisory
- https://issues.redhat.com/browse/OCPBUGS-37075 advisory
- https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_4846.json advisory
- https://www.cve.org/CVERecord?id=CVE-2023-29483 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2023-29483 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2024-6104 advisory
- https://access.redhat.com/errata/RHSA-2024:4846 advisory
- https://access.redhat.com/security/updates/classification/#moderate advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2274520 issue
- https://issues.redhat.com/browse/OCPBUGS-35053 advisory
- https://issues.redhat.com/browse/OCPBUGS-36745 advisory
- https://issues.redhat.com/browse/OCPBUGS-36782 advisory
- https://issues.redhat.com/browse/OCPBUGS-37160 advisory
- https://access.redhat.com/security/cve/CVE-2023-29483 advisory
- https://www.dnspython.org/news/2.6.0rc1/ advisory
- https://access.redhat.com/security/cve/CVE-2024-6104 advisory
- https://www.cve.org/CVERecord?id=CVE-2024-6104 advisory