CVEs referencing
https://access.redhat.com/errata/RHSA-2024:4484
A flaw was found in OpenShift's Telemeter. If certain conditions are in place, an attacker can use a forged token to bypass the issue ("iss") check during JSON web token (JWT) authentication.
Max CVSS
7.5
EPSS Score
0.49%
Published
2024-06-05
Updated
2024-08-19
CVE-2024-6387
Potential exploit
A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.
Max CVSS
8.1
EPSS Score
59.24%
Published
2024-07-01
Updated
2025-04-24