Site icon API Security Blog

(RHSA-2025:4511) Important: RHODF-4.18-RHEL-9 security update

image
OpenShift Data Foundation is software-defined storage integrated with and optimized for the Red Hat OpenShift Data Foundation. Red Hat OpenShift DataFoundation is a highly scalable, production-grade persistent storage for stateful applications running in the Red Hat OpenShift Container Platform. In addition to persistent storage, Red Hat OpenShift Data Foundation provisions a multi-cloud data management service with an S3 compatible API. Security Fix(es): express: cause malformed URLs to be evaluated (CVE-2024-29041) npm-serialize-javascript: Cross-site Scripting (XSS) in serialize-javascript (CVE-2024-11831) http-proxy-middleware: Denial of Service (CVE-2024-21536) go-jose: Go JOSE's Parsing Vulnerable to Denial of Service (CVE-2025-27144) golang.org/x/oauth2/jws: Unexpected memory consumption during token parsing in golang.org/x/oauth2/jws (CVE-2025-22868) golang.org/x/crypto/ssh: Denial of Service in the Key Exchange of golang.org/x/crypto/ssh (CVE-2025-22869) golang-jwt/jwt: jwt-go allows excessive memory allocation during header parsing (CVE-2025-30204) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References…Read More

Exit mobile version