Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2023:2088 - Bug Fix Advisory
Issued:
2023-05-02
Updated:
2023-05-02

RHBA-2023:2088 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat Advanced Cluster Management for Kubernetes 2.6 for RHEL 8 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat Advanced Cluster Management for Kubernetes 2.6 for RHEL 8 container images are now available

Description

The Red Hat Advanced Cluster Management for Kubernetes 2.6 for RHEL 8 container images have been updated to address the following security advisory: RHSA-2023:1405 (see References)

Users of Red Hat Advanced Cluster Management for Kubernetes 2.6 for RHEL 8 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat Advanced Cluster Management for Kubernetes 2.6 for RHEL 8 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat Advanced Cluster Management for Kubernetes 2 for RHEL 8 x86_64

Fixes

  • BZ - 2164440 - CVE-2023-0286 openssl: X.400 address type confusion in X.509 GeneralName
  • BZ - 2164487 - CVE-2022-4304 openssl: timing attack in RSA Decryption implementation
  • BZ - 2164492 - CVE-2023-0215 openssl: use-after-free following BIO_new_NDEF
  • BZ - 2164494 - CVE-2022-4450 openssl: double free after calling PEM_read_bio_ex

CVEs

  • CVE-2022-4304
  • CVE-2022-4450
  • CVE-2023-0215
  • CVE-2023-0286
  • CVE-2023-0361
  • CVE-2023-0767
  • CVE-2023-1668

References

  • https://access.redhat.com/errata/RHSA-2023:1405
  • https://access.redhat.com/containers

aarch64

rhacm2/lighthouse-agent-rhel8@sha256:109d8686777dceaff8afb7ce3dc8fb66883cec6105c85e2023ce3988af8bdc5a
rhacm2/lighthouse-coredns-rhel8@sha256:6099fc405ccea9ec365b2498c6506af6845e26d36df9c29bf43b90853708cf9a
rhacm2/nettest-rhel8@sha256:ff8dcf2af7e3e0abd6dffc6e27f7819644fc3b242dc7e1127edf166a6a4e7877
rhacm2/subctl-rhel8@sha256:c2c0d73343d661cb2d226f94206bd852f469ad6a20fefc933d6b2351be08c53f
rhacm2/submariner-gateway-rhel8@sha256:b7b248ad7c5a4c3a686ea6d949ac1b9d1354185af7e0b8e7f3091221f994fb35
rhacm2/submariner-globalnet-rhel8@sha256:8fa5c7cf8b6fe22e88eef5de287201ae795175a25312c87901ad492926df795c
rhacm2/submariner-networkplugin-syncer-rhel8@sha256:eef549c7dfc16de9a5d79273f325e9d21972f9c1a972d18080f34fcafce05cb7
rhacm2/submariner-rhel8-operator@sha256:e90eae3fe90c4b895453df712f23165a0c92e2865d84851f4e8e32dc28195f70
rhacm2/submariner-route-agent-rhel8@sha256:e332d98974c1a598cff53685ae1e20e5f0d544371ba9cf92b2ef6c1ef91149bf

ppc64le

rhacm2/lighthouse-agent-rhel8@sha256:e564d504874ca2ce9620adc53355c2962683d64d240f0c34023bb99e450f46a1
rhacm2/lighthouse-coredns-rhel8@sha256:1a97995e64c16612eeafc9294c90b2018eebe79d0f34b161fe66a511ca9a3944
rhacm2/nettest-rhel8@sha256:435d8183ec1943cbb8cfcbc6f88e164e3fad8f38df20f68037717fc41e56cfd1
rhacm2/subctl-rhel8@sha256:03f88be319595c3c30c4ab93771d2a0e254e284fd360be7c1dc356a959e9a76b
rhacm2/submariner-gateway-rhel8@sha256:4752b2e6c11d834bb342991dbb5c8658bb5b53454b9323629e3ea2c1040906a8
rhacm2/submariner-globalnet-rhel8@sha256:2d271a2c8cd65e0bbdf8433c0c9682f7fb0a3646cc2940537d06e5724bcf8fe2
rhacm2/submariner-networkplugin-syncer-rhel8@sha256:0b34cf575f179e83f768fbe249971a3abaf146ec1ec970fae9143810f8a43114
rhacm2/submariner-rhel8-operator@sha256:318442be7639472aa5fa5cc71d374cfe27df0c371cce5b1285bc21c66dcdc882
rhacm2/submariner-route-agent-rhel8@sha256:40f173ad4de9ee360a7589a70c78aaea68d46614cd8806c9bf13a1f5773603cb

s390x

rhacm2/lighthouse-agent-rhel8@sha256:3549adab8364a408cbbb98f12d52fb3b6f84c655c12b8f5472c1958d015f49da
rhacm2/lighthouse-coredns-rhel8@sha256:b982407100997ca7410c5b5bddc62ec27cc0f4d600950c3d1c7bde5e9201a97d
rhacm2/nettest-rhel8@sha256:3ef5b3533099734c6e3331649f8c1f311fdcf80f9a78d6cba490130bd7496bd3
rhacm2/subctl-rhel8@sha256:c1e5db52d2cd82f705d84f81730c1953eeeab611980fde6c3b2842ce14b2e6cb
rhacm2/submariner-gateway-rhel8@sha256:e36f24eceda1db237723962e16739aa908fedc83a835f5ae478fdeca686462ab
rhacm2/submariner-globalnet-rhel8@sha256:4383b0c5a6cce5f11eeef990ed6637decd5c8b50d9ef7a6a416db4326867d595
rhacm2/submariner-networkplugin-syncer-rhel8@sha256:f66a1f93f0c11950ecb610ee411cdb487148b4072f7be2a3be03ac486f946d6d
rhacm2/submariner-rhel8-operator@sha256:c35b0e749778c2f3897c94d90939711288f4ff5c547d99595c20d0c2f217310c
rhacm2/submariner-route-agent-rhel8@sha256:c3c0206ce70ded2762208b35f6432fcea33d494218512671ae789a2fb97ba04a

x86_64

rhacm2/lighthouse-agent-rhel8@sha256:db6f8dd8f8fa0daa9c152d58af907182091e4bcfbb7ba0da16da380145709317
rhacm2/lighthouse-coredns-rhel8@sha256:93e57172db03ab49f642988d031ef717a05e3f5ae174ea96bb538bbcc4b5d01b
rhacm2/nettest-rhel8@sha256:91888a54dff69d279174206a69eb264b63b91ad5baf15c9e1badb67d7d23e1e7
rhacm2/subctl-rhel8@sha256:f8b6863580cbd8ebb9f3416afed64f6de8d63523f9d493099336b90d11c29c34
rhacm2/submariner-gateway-rhel8@sha256:60703e1d96dc4f5c0d2ac0197e0a0a7235d6fedb5a753595ffc65f9ab0327e03
rhacm2/submariner-globalnet-rhel8@sha256:aa0e4b49b77c69096968b9af73f3a34e2c21ffaaa314317455519cf2ffee8b98
rhacm2/submariner-networkplugin-syncer-rhel8@sha256:2e15ecaf24b82f9cb66d913f86b724398daa743ad0a36aaffee2909ac17a6a73
rhacm2/submariner-rhel8-operator@sha256:db0032aeaeb97b50197de23772e799120d2712c601408c368ed5d82b0181daca
rhacm2/submariner-route-agent-rhel8@sha256:5894485f3f06214cd1b8702a33e916200fe8e175c54995ae4a0e7bbc18f95167

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility