Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2023:1502 - Bug Fix Advisory
Issued:
2023-03-28
Updated:
2023-03-28

RHBA-2023:1502 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat Advanced Cluster Management for Kubernetes 2.5 for RHEL 8 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat Advanced Cluster Management for Kubernetes 2.5 for RHEL 8 container images are now available

Description

The Red Hat Advanced Cluster Management for Kubernetes 2.5 for RHEL 8 container images have been updated to address the following security advisory: RHSA-2023:1405 (see References)

Users of Red Hat Advanced Cluster Management for Kubernetes 2.5 for RHEL 8 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat Advanced Cluster Management for Kubernetes 2.5 for RHEL 8 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat Advanced Cluster Management for Kubernetes 2 for RHEL 8 x86_64

Fixes

  • BZ - 2164440 - CVE-2023-0286 openssl: X.400 address type confusion in X.509 GeneralName
  • BZ - 2164487 - CVE-2022-4304 openssl: timing attack in RSA Decryption implementation
  • BZ - 2164492 - CVE-2023-0215 openssl: use-after-free following BIO_new_NDEF
  • BZ - 2164494 - CVE-2022-4450 openssl: double free after calling PEM_read_bio_ex

CVEs

  • CVE-2020-10735
  • CVE-2021-28861
  • CVE-2022-4304
  • CVE-2022-4337
  • CVE-2022-4338
  • CVE-2022-4415
  • CVE-2022-4450
  • CVE-2022-40897
  • CVE-2022-45061
  • CVE-2023-0215
  • CVE-2023-0286
  • CVE-2023-23916

References

  • https://access.redhat.com/errata/RHSA-2023:1405
  • https://access.redhat.com/containers

aarch64

rhacm2/lighthouse-agent-rhel8@sha256:099357d578f5da93ebf280fba94a091d7f65e28aa8585dea62ae8d4d256000e2
rhacm2/lighthouse-coredns-rhel8@sha256:3c48b75ea98be649062c1c7a55acd7ff005d61e6de0a343f0a46fd2b05f502ae
rhacm2/subctl-rhel8@sha256:62d2ad3986616c9207a49074df3d0852d76f6ccc13324732be096a302a58bd00
rhacm2/submariner-gateway-rhel8@sha256:e1ab690a1185fdf5959dd8486361ca55b1446549c25c39193ada4552cc9258ea
rhacm2/submariner-globalnet-rhel8@sha256:cf7cf1744738a1ba20a9f4db587b5ddc1305343f649d0f1a749a5b3b93b65eaa
rhacm2/submariner-networkplugin-syncer-rhel8@sha256:f43094c24c2a4f3a896918d887b2683f7589ee7e811a8525d9121521770a35b9
rhacm2/submariner-rhel8-operator@sha256:75e54cff55c111c5fcefd4efab23fca315b60d2fbb6f0c1ef1326e09a10c803d
rhacm2/submariner-route-agent-rhel8@sha256:65751180c9612640845c4209d897a903d9a2d0800e335fe186fd58d300ae08dd
rhacm2/volsync-mover-rclone-rhel8@sha256:d61749e8189c09cc7e30675e86f26c123cf2e912bdeb5b567e2b63cbeed046af
rhacm2/volsync-mover-restic-rhel8@sha256:d536683d3f11601e196e2a041d52151639f07c3217686b9ff94b01cc51cbb118
rhacm2/volsync-mover-rsync-rhel8@sha256:5a52c26cac884720fcd608b923b6dbda5542c8bfe3fe04d7c4cf7f6076081c89
rhacm2/volsync-rhel8@sha256:215fad5d8adf0bfba0a8846e712d791015433d8976221919a6595d323635bfe4

ppc64le

rhacm2/lighthouse-agent-rhel8@sha256:c3d066b2a48bc504e92c0c7b0608e3a95239ceb6dfe59b84381ce5090a98b845
rhacm2/lighthouse-coredns-rhel8@sha256:78a52a227311816fd66b8450a120505a5d69edea13b80def50f9b788e0fcb56e
rhacm2/subctl-rhel8@sha256:767957ae05e4df6724a9d00dbbb465d21676f4d956968dfa42c0418f8f208f05
rhacm2/submariner-gateway-rhel8@sha256:f61c872ffafd1497698f94f13eef6e8888073d01cbade3eeb40783f3dd9e470f
rhacm2/submariner-globalnet-rhel8@sha256:e8ab32845cbc4a2c1171bc4d36f83f00aa372604f67658681a8038e527d7cc47
rhacm2/submariner-networkplugin-syncer-rhel8@sha256:2658abf09c7063a9bacb88dc45f3c8d08c5f09fc442c82b89206d12436c02bbc
rhacm2/submariner-rhel8-operator@sha256:691ebf1d40f81ae1e871a4d54c9859aa1a94a403c3b640e4ce234ac3aa353858
rhacm2/submariner-route-agent-rhel8@sha256:3167bb94a7a7e7fa9e32872e8314bb69212bf02687296463fe59b4b7572986f5
rhacm2/volsync-mover-rclone-rhel8@sha256:43e97f70efd429a8a33aa127d93311e0a8013bb182df5efc659dd7cdd8342b58
rhacm2/volsync-mover-restic-rhel8@sha256:0da9eee24e3ae0d5bffaa635fed4a0b12f7e45b5c6ea3bb4176f5453b679e265
rhacm2/volsync-mover-rsync-rhel8@sha256:bb883dbf561a5643f6fc2c6b42e5caacccdb5732fa88c1158d740ecf46cd3d62
rhacm2/volsync-rhel8@sha256:193e3fdeeb7c733d9c615aaa84dddcdbc522c1b9af19e1eae6f2121c2afc038c

s390x

rhacm2/lighthouse-agent-rhel8@sha256:89059e6d876d4cd46544f731a911b86f139d247f814a740428bba68bae167caf
rhacm2/lighthouse-coredns-rhel8@sha256:5165380e0fbf17f2e6804f975001baf742697144ef2e7910121559814eadcfef
rhacm2/subctl-rhel8@sha256:c25db2073660156c4cc313a4709e9605d5b0cc5063222ec23308e0a5a41e7795
rhacm2/submariner-gateway-rhel8@sha256:1f4894a777e0eebf8a177aeba8f1ad58e36781ff3d1106d880532b50aa0740fb
rhacm2/submariner-globalnet-rhel8@sha256:ea65b10a5ca7a0bd6a008c71e7f2626b64d839766080ea8c8fedb26291f74fbd
rhacm2/submariner-networkplugin-syncer-rhel8@sha256:001c877756d71bffd53c12b4acb284f66d8ea29244796513f1c6c089e7203db5
rhacm2/submariner-rhel8-operator@sha256:d648281fdc7bab2b9dee387164ccf96f976828278822c5eb4ab5ecb9263d0add
rhacm2/submariner-route-agent-rhel8@sha256:5f3a24bedd44b26ea89693e2324eadf20909b33c0bc2547ddb14794e2cc0534f
rhacm2/volsync-mover-rclone-rhel8@sha256:5ce697f3357c9188a15d71541cab69088e4d954d97edc918e680a6b5a9977926
rhacm2/volsync-mover-restic-rhel8@sha256:a829c09f471154cca5bbff614ee56e48795ea817ffbc63eb00ccee5ae4dd5aeb
rhacm2/volsync-mover-rsync-rhel8@sha256:ee370513febc906e88452164228a7d6e2f4bb6048688186348bdd79e1dea86b1
rhacm2/volsync-rhel8@sha256:3dc79a1dffa34d172ea741b42f11a6cd7138cf8460037a12045842470fb190bd

x86_64

rhacm2/lighthouse-agent-rhel8@sha256:549cd0d34a21c8581059b95ec0ed7c991e9803ddd1e5034821fcf535d37d309c
rhacm2/lighthouse-coredns-rhel8@sha256:66746a87b0ad075d8491461eba7ed0eb573bf737aba3173c92da4cae90b6e2fb
rhacm2/subctl-rhel8@sha256:acabbb7b85ecf99d0b58a7e1ad857c75efb577b4691e52dadb7ed580ea98b04e
rhacm2/submariner-gateway-rhel8@sha256:5c9560bec8e37ad4d8ad16ba14e5220b752aaeb52c3438141af06414ef464dad
rhacm2/submariner-globalnet-rhel8@sha256:d32f8b7e899b69a97be2f9622cd80aa5eecadfef234be49547eaaebde7bd5259
rhacm2/submariner-networkplugin-syncer-rhel8@sha256:c20c09b9cc608def8a67a236cd126159ead0e4d9ef9ee11547dc36e9adf988dc
rhacm2/submariner-rhel8-operator@sha256:40a8c3801dc44df2355d553041f0fc5c9a48eb00662e6cf523e48fe767bd44ff
rhacm2/submariner-route-agent-rhel8@sha256:ea04a246321373a01d896a44c72c8b63126fafe5fec6b6540a32ca489fff8cc5
rhacm2/volsync-mover-rclone-rhel8@sha256:0760c58193743601fde3e30c76885e1e74aa7d8cd628ef46df7b7674c8371f9d
rhacm2/volsync-mover-restic-rhel8@sha256:3129eeb816579388372ecd8d0605944e26110caf257867c1822532413f718f2b
rhacm2/volsync-mover-rsync-rhel8@sha256:fcd80f5fa86e6874ec0c78341a4159a75814fdb05c5792b6d54ac026aaebc5b4
rhacm2/volsync-rhel8@sha256:640af26e771e72fc3a39da3137242c9d29fbf07faf33ec963ac2f85a6c0d3920

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility