Is Red Hat Satellite 6.15 affected by 'Out-of-bounds Read vulnerability' from CVE-2024-5629 and CVE-2024-21506?

Solution Verified - Updated -

Issue

  • The vulnerability assesment of a Red Hat Satellite 6.15 shows the following vulnerability with PyMongo :

    PyMongo < 4.6.3 Out-of-bounds Read
    
    Plugin Output: 
     Path              : /usr/lib64/python3.6/pymongo
     Installed version : 3.7.0
     Fixed version     : 4.6.3
    
  • The same concern could be reported for Red Hat Satellite 6.11 - 6.14 if they were upgraded from a much older version.

Environment

  • Red Hat Satellite
    • 6.15
    • 6.14
    • 6.13

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content