Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:3369 - Security Advisory
Issued:
2024-05-28
Updated:
2024-05-28

RHSA-2024:3369 - Security Advisory

  • Overview
  • Updated Images

Synopsis

Important: Errata Advisory for Red Hat OpenShift GitOps v1.10.6 security update

Type/Severity

Security Advisory: Important

Topic

An update is now available for Red Hat OpenShift GitOps v1.10.6 to address the CVE-2024-31989, Unprivileged pod in a different namespace on the same cluster could connect to the Redis server on port 6379. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Errata Advisory for Red Hat OpenShift GitOps v1.10.6

Security Fix(es):

  • CVE-2024-31989 argocd: unprivileged pod in a different namespace on the same cluster could connect to the Redis server on port 6379.

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

For details on how to apply this update, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat OpenShift GitOps 1.10 x86_64
  • Red Hat OpenShift GitOps for IBM Power, little endian 1.10 ppc64le
  • Red Hat OpenShift GitOps for IBM Z and LinuxONE 1.10 s390x
  • Red Hat OpenShift GitOps for ARM 64 1.10 aarch64

Fixes

  • BZ - 2280218 - CVE-2024-31989 argocd: Use of Risky or Missing Cryptographic Algorithms in Redis Cache

CVEs

  • CVE-2020-15778
  • CVE-2023-4408
  • CVE-2023-6004
  • CVE-2023-6918
  • CVE-2023-7008
  • CVE-2023-50387
  • CVE-2023-50868
  • CVE-2023-52425
  • CVE-2024-2961
  • CVE-2024-22365
  • CVE-2024-26458
  • CVE-2024-26461
  • CVE-2024-28834
  • CVE-2024-31989

References

  • https://access.redhat.com/security/updates/classification/#important

aarch64

openshift-gitops-1/argo-rollouts-rhel8@sha256:f0037ac4a08f2b1d8be4c32a3f054774f07e71f0a069d3ce623552ed4924b584
openshift-gitops-1/argocd-rhel8@sha256:f782a2d1f8b01be13a11e651540f9791e52246a764f7627cc9fba9f84834be4a
openshift-gitops-1/console-plugin-rhel8@sha256:c79af79d95a745692d814b2dfd01651cc658a0e4f682cfb8e50815b91b453199
openshift-gitops-1/dex-rhel8@sha256:3d67cf48a48e80b2a7afcd62279ec9ccfd782ac0a28a8c8fc32d4d674fc930d7
openshift-gitops-1/gitops-rhel8@sha256:15b985be0cbe682fc899666235c9475957ea6fa5512b3b7cd587a3ef5fd8bb93
openshift-gitops-1/gitops-rhel8-operator@sha256:174f1e9de387d98cbbbbe90c5bdbeb3b7858ce6f43701aff7d6d72f3c7b87746
openshift-gitops-1/kam-delivery-rhel8@sha256:a81faaa39945fe28a767fce051d15b8db761369994ac351b85a08aeaca0bfebd
openshift-gitops-1/must-gather-rhel8@sha256:827d9ee1eb2463b489ec68f8994fa07fe2ead0255801311a0b27cc1a38b7f232

ppc64le

openshift-gitops-1/argo-rollouts-rhel8@sha256:4dede36872408d83618f264bbea1774f72d57c682bf5d8bbefffc120b045343c
openshift-gitops-1/argocd-rhel8@sha256:5cf362a5c8defc1784a752aef1384f81e8efda6318f5536a64eb90335558508c
openshift-gitops-1/console-plugin-rhel8@sha256:d59d44911f7f2c702524a93cafeee53475904d124313425e80fc5b5404d7873e
openshift-gitops-1/dex-rhel8@sha256:6991b62c782f4ca2d133636d6cf12da3d63a799cb01e857f442800dcafe3677f
openshift-gitops-1/gitops-rhel8@sha256:2f773920fe6d238ac0521062bdd4bc55ada31936aec5d7ec28b562e78646a545
openshift-gitops-1/gitops-rhel8-operator@sha256:78bea74dee090be584bd0b9cbe4eee34083deea1a01a3b234002eafdb97cd2da
openshift-gitops-1/kam-delivery-rhel8@sha256:b3497e092e4800eb989397a335516e8773ce74ac122a58402f245e9689379f73
openshift-gitops-1/must-gather-rhel8@sha256:2ecd43a2f7fb1a45c7f9bb3d77c7efa98b17317e92f06dd543f7e4b9ffe7b05d

s390x

openshift-gitops-1/argo-rollouts-rhel8@sha256:0608ca9bc5c778b10056ce89287ebce6329ef1d15a521aa764c36be2d2c83fd6
openshift-gitops-1/argocd-rhel8@sha256:1ed6d86544f6c3a295cdc17a9268cd91f79f714c6f4ab3cff94c9e66a6fe2aaa
openshift-gitops-1/console-plugin-rhel8@sha256:1a0a1f97664033388776bb04df16473f9cd5c500bed97165cedff8a7030fd868
openshift-gitops-1/dex-rhel8@sha256:655eb264bf4abcfa23dc3c15379400afcef3281514880d5152a09917fe86f322
openshift-gitops-1/gitops-rhel8@sha256:cc7a542c4ee755a60c1cb688a2fac4c6887a7d89b8d9634ed7447a45023c8157
openshift-gitops-1/gitops-rhel8-operator@sha256:90225f439b88ca9db06965fd22026b053836ed06bf286b7a80c0e33bd389377f
openshift-gitops-1/kam-delivery-rhel8@sha256:5a3d73268b62e644001cd7c3a99f997b83df62ae66d9dbdf336e90fd64e58128
openshift-gitops-1/must-gather-rhel8@sha256:d7384c2354d5ebfbb25da696b269dfa460137489ea23d58bcf4a5a4c4571caec

x86_64

openshift-gitops-1/argo-rollouts-rhel8@sha256:64dd56354e5b7d467307beee042b329aea149caea0b03400649dc4e0ec96a024
openshift-gitops-1/argocd-rhel8@sha256:688eb12e6b880ed645bb588b3adafeb4736b179a1606ddaf58f9c2de022a35f6
openshift-gitops-1/console-plugin-rhel8@sha256:58a4e77d29c5277559518d042cf84e083be1408eb397c20bcd56c3d8b80c7b1f
openshift-gitops-1/dex-rhel8@sha256:c3972e66a24fc340f5fb87d5e14afede851dbbac24061c84f94623bc826091d7
openshift-gitops-1/gitops-operator-bundle@sha256:ed530db9b4a29fb591ea208cd0c6b3b83b49537ff5a0a4f501b54ce667f9b303
openshift-gitops-1/gitops-rhel8@sha256:7e428454aeb35c640bb9ae607f95e523ffbead6788cdea0c8c99bd8ae9a8451a
openshift-gitops-1/gitops-rhel8-operator@sha256:6a674317b6ab5a65a4abadecff028dd03ceacd0d819841afb6365d604b08b4fe
openshift-gitops-1/kam-delivery-rhel8@sha256:9a9b0fcd52a78dec186643343ca513875c9a234555e5c406580b616afc03e404
openshift-gitops-1/must-gather-rhel8@sha256:2eda7599f9454e50c60949f75447e4599d4f8a7e2a9fd37f32a1a0c4e6078fcb

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat, Inc.

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility