The vendor explicitly identifies these products or versions as containing the fix.
- grype-main@aarch64 as a component of Red Hat Hardened Images
- grype-main@src as a component of Red Hat Hardened Images
- grype-main@x86_64 as a component of Red Hat Hardened Images
- kubernetes1-35-main@aarch64 as a component of Red Hat Hardened Images
- kubernetes1-35-main@src as a component of Red Hat Hardened Images
- kubernetes1-35-main@x86_64 as a component of Red Hat Hardened Images
- kubernetes1-36-main@aarch64 as a component of Red Hat Hardened Images
- kubernetes1-36-main@src as a component of Red Hat Hardened Images
- kubernetes1-36-main@x86_64 as a component of Red Hat Hardened Images
- opentelemetry-collector-contrib-main@aarch64 as a component of Red Hat Hardened Images
- opentelemetry-collector-contrib-main@src as a component of Red Hat Hardened Images
- opentelemetry-collector-contrib-main@x86_64 as a component of Red Hat Hardened Images
- Summary
- A flaw was found in containerd, an open-source container runtime. A remote attacker could exploit this vulnerability by providing a maliciously crafted image. When a container is created from this image, it leads to uncontrolled resource consumption and memory exhaustion, causing the containerd process to terminate. This results in a Denial of Service (DoS) condition, making the container runtime API unavailable and disrupting clients like Docker Engine or Kubernetes.
- Remediation
- For details on how to apply this update, which includes the changes described in this advisory, refer to: https://images.redhat.com/
