Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
RHEA-2025:4438
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHEA-2025:4438
Import Source
https://security.access.redhat.com/data/osv/RHEA-2025:4438.json
JSON Data
https://api.osv.dev/v1/vulns/RHEA-2025:4438
Upstream
CVE-2024-45337
CVE-2025-30204
Related
GO-2024-3321
GO-2025-3553
Published
2026-08-08T10:06:24Z
Modified
2026-08-09T10:06:02Z
Severity
8.2 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N
CVSS Calculator
Summary
Red Hat Enhancement Advisory: Red Hat OpenShift Service on AWS 1.0 enhancements
Details
References
https://access.redhat.com/errata/RHEA-2025:4438
https://issues.redhat.com/browse/OCM-14567
https://issues.redhat.com/browse/OCM-14796
https://issues.redhat.com/browse/OCM-14846
https://issues.redhat.com/browse/OCM-14864
https://issues.redhat.com/browse/OCM-14892
https://issues.redhat.com/browse/OCM-14948
https://issues.redhat.com/browse/OCM-15159
https://issues.redhat.com/browse/OCM-4667
https://issues.redhat.com/browse/OCM-9780
https://issues.redhat.com/browse/OSD-28968
https://issues.redhat.com/browse/ROSAENG-16904
https://issues.redhat.com/browse/ROSAENG-17384
https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhea-2025_4438.json
https://access.redhat.com/security/cve/CVE-2024-45337
https://bugzilla.redhat.com/show_bug.cgi?id=2331720
https://www.cve.org/CVERecord?id=CVE-2024-45337
https://nvd.nist.gov/vuln/detail/CVE-2024-45337
https://github.com/golang/crypto/commit/b4f1988a35dee11ec3e05d6bf3e90b695fbd8909
https://go.dev/cl/635315
https://go.dev/issue/70779
https://groups.google.com/g/golang-announce/c/-nPEi39gI4Q/m/cGVPJCqdAQAJ
https://pkg.go.dev/vuln/GO-2024-3321
https://access.redhat.com/security/cve/CVE-2025-30204
https://bugzilla.redhat.com/show_bug.cgi?id=2354195
https://www.cve.org/CVERecord?id=CVE-2025-30204
https://nvd.nist.gov/vuln/detail/CVE-2025-30204
https://github.com/golang-jwt/jwt/commit/0951d184286dece21f73c85673fd308786ffe9c3
https://github.com/golang-jwt/jwt/security/advisories/GHSA-mh63-6h87-95cp
https://pkg.go.dev/vuln/GO-2025-3553
Affected packages
Red Hat:openshift_service_on_aws:1::el8
/
rosa
Package
Name
rosa
Purl
pkg:rpm/redhat/rosa
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.53-5be4e19.el8
Database specific
source
"https://security.access.redhat.com/data/osv/RHEA-2025:4438.json"
Red Hat:openshift_service_on_aws:1::el8
/
rosa-redistributable
Package
Name
rosa-redistributable
Purl
pkg:rpm/redhat/rosa-redistributable
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.2.53-5be4e19.el8
Database specific
source
"https://security.access.redhat.com/data/osv/RHEA-2025:4438.json"
RHEA-2025:4438 - OSV