Known vulnerabilities in OpenShift Data Foundation (formerly OpenShift Container Storage) - page 6

Software CPE: cpe:2.3:a:red_hat:openshift_container_storage:*:*:*:*:*:*:*:*
Total vulnerabilities: 476
Public exploits: 35
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting OpenShift Data Foundation (formerly OpenShift Container Storage) OpenShift Data Foundation (formerly OpenShift Container Storage) is affected by 476 known vulnerabilities: 1 critical, 90 high, 246 medium, 139 low Critical High Medium Low

Vulnerabilities (476)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU97478 - Inefficient Regular Expression Complexity
CVE-2024-41818
CWE-1333 Medium
No
No
4.14.11, 4.16.2, 4.17.0 18.09.2024 SB2024091833
SB2024091834
SB2024092612
and 12 more
#VU96899 - Integer overflow
CVE-2024-45492
CWE-190 High
No
No
4.13.12, 4.14.11, 4.16.3 05.09.2024 SB20240905100
SB20240905101
SB20240905102
and 108 more
#VU96898 - Integer overflow
CVE-2024-45491
CWE-190 High
No
No
4.13.12, 4.14.11, 4.16.3 05.09.2024 SB20240905100
SB20240905101
SB20240905102
and 106 more
#VU96897 - Buffer Underwrite ('Buffer Underflow')
CVE-2024-45490
CWE-124 High
No
No
4.13.12, 4.14.11, 4.16.3 05.09.2024 SB20240905100
SB20240905101
SB20240905102
and 113 more
#VU95571 - Command injection
CVE-2024-6923
CWE-77 Medium
No
No
4.13.12, 4.14.11, 4.16.2 08.08.2024 SB2024080861
SB2024080862
SB2024080863
and 144 more
#VU95339 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-6345
CWE-94 High
No
No
4.16.2 05.08.2024 SB2024080590
SB2024080593
SB2024080594
and 160 more
#VU94713 - Reachable Assertion
CVE-2024-4076
CWE-617 Medium
No
No
4.16.2 24.07.2024 SB2024072415
SB2024072417
SB2024072418
and 36 more
#VU94711 - Resource exhaustion
CVE-2024-1975
CWE-400 Medium
No
No
4.16.2 24.07.2024 SB2024072415
SB2024072417
SB2024072418
and 72 more
#VU94710 - Resource Management Errors
CVE-2024-1737
CWE-399 Medium
No
No
4.16.2 24.07.2024 SB2024072415
SB2024072417
SB2024072418
and 73 more
#VU94616 - Information Exposure Through Log Files
CVE-2024-6104
CWE-532 Low
No
No
4, 4.13.12, 4.14.11, 4.16.2 19.07.2024 SB2024071927
SB2024071929
SB2024071930
and 83 more
#VU93519 - Out-of-bounds read
CVE-2024-37371
CWE-125 Medium
No
No
4.13.12, 4.14.11, 4.16.2 01.07.2024 SB2024070148
SB2024070491
SB2024070496
and 114 more
#VU93518 - Improper input validation
CVE-2024-37370
CWE-20 Medium
No
No
4.13.12, 4.14.11, 4.16.2 01.07.2024 SB2024070148
SB2024070491
SB2024070496
and 96 more
#VU93118 - Use of Potentially Dangerous Function
CVE-2024-39331
CWE-676 High
No
No
4.13.12, 4.14.11, 4.16.3 24.06.2024 SB2024062429
SB2024062430
SB2024062431
and 46 more
#VU93077 - Improper input validation
CVE-2024-38428
CWE-20 Medium
No
No
4.13.12, 4.14.11, 4.16.2 22.06.2024 SB2024062208
SB2024062219
SB2024062421
and 45 more
#VU92262 - Exposure of sensitive information to an unauthorized actor
CVE-2024-37891
CWE-200 Low
No
No
4.13.12, 4.14.11, 4.16.2 19.06.2024 SB2024061955
SB20240625146
SB2024062605
and 194 more
#VU91160 - Improper input validation
CVE-2024-24790
CWE-20 Medium
No
No
4, 4.14.18, 4.15.14, 4.16.2 05.06.2024 SB2024060520
SB2024060635
SB2024060729
and 90 more
#VU91159 - Improper input validation
CVE-2024-24789
CWE-20 Low
No
No
4.16.2, 4.17.0 05.06.2024 SB2024060520
SB2024060635
SB2024060729
and 78 more
#VU90715 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-29180
CWE-22 Medium
No
No
4.14.18, 4.15.14, 4.16.2 03.06.2024 SB2024060314
SB2024060328
SB2024060410
and 18 more
#VU87850 - Missing Release of Resource after Effective Lifetime
CVE-2024-2398
CWE-772 Medium
No
No
4.16.2 27.03.2024 SB2024032713
SB2024032740
SB2024032744
and 106 more
#VU87197 - Resource exhaustion
CVE-2023-45290
CWE-400 Medium
No
No
4.16.2 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 101 more


Showing elements 101 - 120 out of 476