Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2024:5291

Опубликовано: 07 мая 2025
Источник: rocky
Оценка: Moderate

Описание

Moderate: grafana security update

Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB & OpenTSDB.

Security Fix(es):

  • golang: net: malformed DNS message can cause infinite loop (CVE-2024-24788)

  • golang: archive/zip: Incorrect handling of certain ZIP files (CVE-2024-24789)

  • golang: net/netip: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses (CVE-2024-24790)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
grafanax86_6417.el8_10grafana-9.2.10-17.el8_10.x86_64.rpm
grafana-selinuxx86_6417.el8_10grafana-selinux-9.2.10-17.el8_10.x86_64.rpm

Показывать по

Связанные уязвимости

oracle-oval
10 месяцев назад

ELSA-2024-5291: grafana security update (MODERATE)

oracle-oval
7 месяцев назад

ELSA-2024-9115: grafana security update (MODERATE)

suse-cvrf
7 месяцев назад

Security update for go1.22-openssl

suse-cvrf
8 месяцев назад

Security update for go1.22-openssl

oracle-oval
около 1 месяца назад

ELSA-2025-7256: git-lfs security update (MODERATE)