Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2023:3767 - Bug Fix Advisory
Issued:
2023-06-21
Updated:
2023-06-21

RHBA-2023:3767 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat Software Collections for Red Hat Enterprise Linux 7 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat Software Collections for Red Hat Enterprise Linux 7 container images are now available

Description

The Red Hat Software Collections for Red Hat Enterprise Linux 7 container images have been updated to address the following security advisory: RHSA-2023:3555 (see References)

Users of Red Hat Software Collections for Red Hat Enterprise Linux 7 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat Software Collections for Red Hat Enterprise Linux 7 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat Software Collections (for RHEL Server) 1 for RHEL 7 x86_64
  • Red Hat Software Collections (for RHEL Server for System Z) 1 for RHEL 7 s390x
  • Red Hat Software Collections (for RHEL Server for IBM Power LE) 1 for RHEL 7 ppc64le

Fixes

  • BZ - 2173917 - CVE-2023-24329 python: urllib.parse url blocklisting bypass

CVEs

  • CVE-2023-24329

References

  • https://access.redhat.com/errata/RHSA-2023:3555
  • https://access.redhat.com/containers

ppc64le

rhscl/httpd-24-rhel7@sha256:d8ae88badaa8c568909d628ee3eb8a8fe1a0160228c7a79c18e5cce08a1cf3d3
rhscl/mariadb-103-rhel7@sha256:e98fe5facabe4707a1948df04f20a444e3e931f1a44ed739c32bf699136c56c5
rhscl/mariadb-105-rhel7@sha256:952e67e60c7e4272882938dd7b8e719766d08933cb04e6edd3ae49a69c75fbbf
rhscl/mysql-80-rhel7@sha256:77af731994d1302649e1f6c93be6fcbec278584b8624067f509180501d82e9df
ubi7/nginx-120@sha256:f74f4a20192cb8acd040bd1c6075bc266e5cb1d386bbf675fa78c572a59dd17e
rhscl/nginx-120-rhel7@sha256:f74f4a20192cb8acd040bd1c6075bc266e5cb1d386bbf675fa78c572a59dd17e
rhscl/nodejs-14-rhel7@sha256:29c374f6cb709cde550bb1efef78262b62a7a0772f066b145667d9256eba6cb3
ubi7/nodejs-14@sha256:29c374f6cb709cde550bb1efef78262b62a7a0772f066b145667d9256eba6cb3
rhscl/perl-530-rhel7@sha256:0dd47915ba10d8756893f7ca420e76aa15e8f5e6cb8b8334d0e8d656386e2242
ubi7/php-73@sha256:e4c45292e776b2309d481f86f389c491377396e64e8751c8a1fc18ef348ec89b
rhscl/php-73-rhel7@sha256:e4c45292e776b2309d481f86f389c491377396e64e8751c8a1fc18ef348ec89b
rhscl/postgresql-10-rhel7@sha256:799c434bdef208448a638370145ae64f46733084f1c61235ff78b182c81e52c6
rhscl/postgresql-12-rhel7@sha256:56fb4ddbf07b9e225253b5b986aa38ada9c5d0cf9f17cbfb08ccc7334bdd5625
rhscl/postgresql-13-rhel7@sha256:c3aa84be86b98aa7eee6f2e5968be754611c3f8c09690eb1ba28e2faf28a2ea3
ubi7/python-38@sha256:cceed7d56c124c4b1b582f46d203f9fd5a8a64732e91fe2a84814314a79676e4
rhscl/python-38-rhel7@sha256:cceed7d56c124c4b1b582f46d203f9fd5a8a64732e91fe2a84814314a79676e4
rhscl/redis-6-rhel7@sha256:82092a367745db9b9d71ae4554b66eb6ba6f6054c494eabb4178269074da9aa6
rhscl/ruby-27-rhel7@sha256:136b91217439d74b53c91c9d2c793815657cf62bd679ada7ebb337c7b33b051c
ubi7/ruby-27@sha256:136b91217439d74b53c91c9d2c793815657cf62bd679ada7ebb337c7b33b051c
ubi7/ruby-30@sha256:65213c066df1acffac45a4746517b029fca184abefb1454dc2a6bc828b96cf95
rhscl/ruby-30-rhel7@sha256:65213c066df1acffac45a4746517b029fca184abefb1454dc2a6bc828b96cf95
rhscl/s2i-base-rhel7@sha256:8e75922a19ab1e0a409e173a0c395d5fcbf69b378ebec63be46c055661a70670
ubi7/s2i-base@sha256:8e75922a19ab1e0a409e173a0c395d5fcbf69b378ebec63be46c055661a70670
ubi7/s2i-core@sha256:5bd73a4bf2aa0e5409f366e79762747ba261c4c5d58f882bf46716bf9e22859e
rhscl/s2i-core-rhel7@sha256:5bd73a4bf2aa0e5409f366e79762747ba261c4c5d58f882bf46716bf9e22859e
rhscl/varnish-6-rhel7@sha256:21b4b35751889113576746e6cf3bfd6e1ecdda708dd17dd671290458c9b0708f

s390x

rhscl/httpd-24-rhel7@sha256:0677aa1305579efadf7f7b1bdb715ca5b29b8d0bc46a7b4146f6f75018b6eb10
rhscl/mariadb-103-rhel7@sha256:401d2978b6b1205ea0cdd7e4340f5eee015678254f2ef8ddad8622d96da34058
rhscl/mariadb-105-rhel7@sha256:0cc64c65bece82306fbea3add30124b3b0cf5961237754d6f25ee43b52ac5fa3
rhscl/mysql-80-rhel7@sha256:bfcc2a21aa6f0c3b2c10a5b4aa78fa9d5e8cb47ab3cfc9756a0fe53db6690271
ubi7/nginx-120@sha256:88360686975545d30b65d1efc19c85f846aa8c23d09835b157067c1f57022087
rhscl/nginx-120-rhel7@sha256:88360686975545d30b65d1efc19c85f846aa8c23d09835b157067c1f57022087
rhscl/nodejs-14-rhel7@sha256:53f588ffd7712ff4418f7cb95df4a10a82c9aa1c0d204160171b534bd405269f
ubi7/nodejs-14@sha256:53f588ffd7712ff4418f7cb95df4a10a82c9aa1c0d204160171b534bd405269f
rhscl/perl-530-rhel7@sha256:7a6173a70b9b1275ae97e43ae63563e6d44903fc176dc271b07483b922eba9d3
ubi7/php-73@sha256:8b5caf97efb51a96b98275dbc86c5984585d1c5344b0b6a2967f2849ef91c65c
rhscl/php-73-rhel7@sha256:8b5caf97efb51a96b98275dbc86c5984585d1c5344b0b6a2967f2849ef91c65c
rhscl/postgresql-10-rhel7@sha256:fd6b974992bd2a7cd56fc5bd3a3df353604ec6abaf210e02c3633a4d827fc79f
rhscl/postgresql-12-rhel7@sha256:34fd1d224c5292d7b339e32245cb3c4af6df7cd49663af76d688c84b53c86cdb
rhscl/postgresql-13-rhel7@sha256:cc3c3f5441d2f76a63bdad3d42bedd2109e54baf8f7721c947eda8a6a71d7bab
ubi7/python-38@sha256:d135bc98af819f68392b01690772b8b0766ab0d896265ba1df5521f50d43a11f
rhscl/python-38-rhel7@sha256:d135bc98af819f68392b01690772b8b0766ab0d896265ba1df5521f50d43a11f
rhscl/redis-6-rhel7@sha256:648615ec5ce54c0ae85d6882a86852ccdc7f1e71ca60831b05a505a4296f75cb
rhscl/ruby-27-rhel7@sha256:8e82b0c39a872aac4b3163fdc6b5b4fbe84c527a053358916dc7c8c48f444292
ubi7/ruby-27@sha256:8e82b0c39a872aac4b3163fdc6b5b4fbe84c527a053358916dc7c8c48f444292
ubi7/ruby-30@sha256:f85b6f710180ec0becf6400cc21187cbb6de89592f0f4399af0500c365a22e55
rhscl/ruby-30-rhel7@sha256:f85b6f710180ec0becf6400cc21187cbb6de89592f0f4399af0500c365a22e55
rhscl/s2i-base-rhel7@sha256:1c3449454f06583ae1ed5aee25560891b0707344e8459e4dc8139b78a312c89f
ubi7/s2i-base@sha256:1c3449454f06583ae1ed5aee25560891b0707344e8459e4dc8139b78a312c89f
ubi7/s2i-core@sha256:433da976edfa9cd90ccae27a2c8c082f2d2098a59a819c40f65183644d2d81e6
rhscl/s2i-core-rhel7@sha256:433da976edfa9cd90ccae27a2c8c082f2d2098a59a819c40f65183644d2d81e6
rhscl/varnish-6-rhel7@sha256:3edccd74bbacccce3914a6050bd0a4606f5539c96da43565f907852271626aa2

x86_64

rhscl/httpd-24-rhel7@sha256:a08cc1217e9516adcc7b74dd09382232e6f5b37dde8cb8d611e0121057979a3a
rhscl/mariadb-103-rhel7@sha256:0973c3064f4ff80d5ed404d4f9a02a8c4a70047996d941b8a6dc674792807148
rhscl/mariadb-105-rhel7@sha256:c57663b731d365f0c5559bcebbab7bd82a03c56ecf5f17a9735e7251463844cb
rhscl/mysql-80-rhel7@sha256:a69a6692b73f242a83308a642e2f9c433afcebbbecf713f062a8b948d18694cf
ubi7/nginx-120@sha256:9bc8c14343e54cc0de1cea922a93ef9aa60ec64e398c667070ec185dc741518f
rhscl/nginx-120-rhel7@sha256:9bc8c14343e54cc0de1cea922a93ef9aa60ec64e398c667070ec185dc741518f
rhscl/nodejs-14-rhel7@sha256:ab153aaed1db63135407ce5ab61c12006f2b177deb52cdd3b0380a450c0bc9db
ubi7/nodejs-14@sha256:ab153aaed1db63135407ce5ab61c12006f2b177deb52cdd3b0380a450c0bc9db
rhscl/perl-530-rhel7@sha256:c04e077b7d89a75997ade6f0c63248ba35284fef58149717c171aceca5c7323c
ubi7/php-73@sha256:0fb449e8bb0b6e9484a95962daead7ed0991ae9d5f1860d902bbbcc92070ad7f
rhscl/php-73-rhel7@sha256:0fb449e8bb0b6e9484a95962daead7ed0991ae9d5f1860d902bbbcc92070ad7f
rhscl/postgresql-10-rhel7@sha256:a21e2a6d92d4ec02421219d6a382f379a12d3ee7a8abe3e74fc01ba0cf56a232
rhscl/postgresql-12-rhel7@sha256:d99bb8c63bbdbbfb1bd1a1f4e1a5f114dc5a0d972cdd9d27ca9e69c16cb98089
rhscl/postgresql-13-rhel7@sha256:c6fde1a8653a597c18b0326bc71ce4a614273be74b9aef3ced83a1b11472687a
ubi7/python-38@sha256:d4e20aa826660f635fad77837b9c6aab8248f0560cd8c3c2283c12704359e9bb
rhscl/python-38-rhel7@sha256:d4e20aa826660f635fad77837b9c6aab8248f0560cd8c3c2283c12704359e9bb
rhscl/redis-6-rhel7@sha256:f90b543868a5aa81a955cb818d97908137d45c8a19150c7659cb3b4d7af75c4c
rhscl/ruby-27-rhel7@sha256:4cfd93334b0a01eab0eead851473bd4eaabfb223efe801a53da319090d949eb3
ubi7/ruby-27@sha256:4cfd93334b0a01eab0eead851473bd4eaabfb223efe801a53da319090d949eb3
ubi7/ruby-30@sha256:f2a64e51962d57a6f979bf1ba7451f068970704c7d255ccb30d694d340f4b966
rhscl/ruby-30-rhel7@sha256:f2a64e51962d57a6f979bf1ba7451f068970704c7d255ccb30d694d340f4b966
rhscl/s2i-base-rhel7@sha256:c072bd76f4eaccd1826657358010683b6e9086bacc4838dcd880cd7fdd60028e
ubi7/s2i-base@sha256:c072bd76f4eaccd1826657358010683b6e9086bacc4838dcd880cd7fdd60028e
ubi7/s2i-core@sha256:2efcb8198fce85c24c5f0c78f1f49c331a8938404cc3ef5d5a3063f4f81a9e52
rhscl/s2i-core-rhel7@sha256:2efcb8198fce85c24c5f0c78f1f49c331a8938404cc3ef5d5a3063f4f81a9e52
rhscl/varnish-6-rhel7@sha256:d134b1606b6157b2be9c338ea345ebda45a1ad2e4cdceb009dba143f9239bce4

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility