- Issued:
- 2024-07-25
- Updated:
- 2024-07-25
RHSA-2024:4867 - Security Advisory
Synopsis
Moderate: Release of openshift-serverless-clients kn 1.33.1 security update and bug fixes
Type/Severity
Security Advisory: Moderate
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
Topic
Red Hat openshift-serverless-clients kn 1.33.1 is now available.
Red Hat Product Security has rated this update as having a security impact of
Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives
a detailed severity rating, is available for each vulnerability from the CVE
link(s) in the References section.
Description
Red Hat OpenShift Serverless Client kn 1.33.1 provides a CLI to interact with
Red Hat OpenShift Serverless 1.33.1. The kn CLI is delivered as an RPM package
for installation on RHEL platforms, and as binaries for non-Linux platforms.
This release includes security, bug fixes, and enhancements.
Security Fix(es):
- golang: archive/zip: Incorrect handling of certain ZIP files(CVE-2024-24789)
A Red Hat Security Bulletin, which addresses further details about the Rapid
Reset flaw is available in the References section.
For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.
Solution
See the Red Hat OpenShift serverless 1 documentation at:
https://access.redhat.com/documentation/en-us/red_hat_openshift_serverless/1
Affected Products
- Red Hat Openshift Serverless 1 x86_64
- Red Hat OpenShift Serverless for IBM Power, little endian 1 ppc64le
- Red Hat OpenShift Serverless for IBM Z and LinuxONE 1 s390x
- Red Hat Openshift Serverless for ARM 1 aarch64
Fixes
- BZ - 2292668 - CVE-2024-24789 golang: archive/zip: Incorrect handling of certain ZIP files
- BZ - 2296266 - Release of Openshift Serverless Client 1.33.1
CVEs
Red Hat Openshift Serverless 1
SRPM | |
---|---|
openshift-serverless-clients-1.12.0-10.el8.src.rpm | SHA-256: e5e81cf2ab9628959801a833d479de204246e6da070b31c208dcd615fedfbfb4 |
x86_64 | |
openshift-serverless-clients-1.12.0-10.el8.x86_64.rpm | SHA-256: a1e569e659ea4684960ba7131ff816dae23e4edf9ecb220c7bb6f3171323e0b1 |
Red Hat OpenShift Serverless for IBM Power, little endian 1
SRPM | |
---|---|
openshift-serverless-clients-1.12.0-10.el8.src.rpm | SHA-256: e5e81cf2ab9628959801a833d479de204246e6da070b31c208dcd615fedfbfb4 |
ppc64le | |
openshift-serverless-clients-1.12.0-10.el8.ppc64le.rpm | SHA-256: 49b21e04f8076ab5d00d6de1590976345d736d31fca6d5f1bc408e29f834ba17 |
Red Hat OpenShift Serverless for IBM Z and LinuxONE 1
SRPM | |
---|---|
openshift-serverless-clients-1.12.0-10.el8.src.rpm | SHA-256: e5e81cf2ab9628959801a833d479de204246e6da070b31c208dcd615fedfbfb4 |
s390x | |
openshift-serverless-clients-1.12.0-10.el8.s390x.rpm | SHA-256: 416fd97252f4505fbdd562ae81a5e94110862ce6f8a1b612c245e820344c7893 |
Red Hat Openshift Serverless for ARM 1
SRPM | |
---|---|
openshift-serverless-clients-1.12.0-10.el8.src.rpm | SHA-256: e5e81cf2ab9628959801a833d479de204246e6da070b31c208dcd615fedfbfb4 |
aarch64 | |
openshift-serverless-clients-1.12.0-10.el8.aarch64.rpm | SHA-256: 337dfffa8b7fc0868f8c4dc67d0246cb6297b3772629d3dac0c93f77f57d8bf5 |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.