CVE-2021-24031

Related Vulnerabilities: CVE-2021-24031  

No description is available for this CVE.

Description

No description is available for this CVE.

Statement

* In OpenShift Container Platform (OCP) the zstd package was delivered in OCP 4.3 which is already end of life. * In Red Hat OpenStack Platform, because zstd is not directly customer exposed, the product Impact has been moved to Low.
  • In OpenShift Container Platform (OCP) the zstd package was delivered in OCP 4.3 which is already end of life.

  • In Red Hat OpenStack Platform, because zstd is not directly customer exposed, the product Impact has been moved to Low.

Additional Information

  • Bugzilla 1934852: CVE-2021-24031 zstd: adds read permissions to files while being compressed or uncompressed
  • CWE-281: Improper Preservation of Permissions
  • FAQ: Frequently asked questions about CVE-2021-24031