Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2023:3770 - Bug Fix Advisory
Issued:
2023-06-21
Updated:
2023-06-21

RHBA-2023:3770 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated RHEL-8 based Middleware Containers container images

Type/Severity

Bug Fix Advisory

Topic

Updated RHEL-8 based Middleware Containers container images are now available

Description

The RHEL-8 based Middleware Containers container images have been updated to address the following security advisory: RHSA-2023:3591 (see References)

Users of RHEL-8 based Middleware Containers container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The RHEL-8 based Middleware Containers container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift Container Platform 4.12 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.11 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform for Power 4.10 for RHEL 8 ppc64le
  • Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.10 for RHEL 8 s390x
  • Red Hat OpenShift Container Platform for ARM 64 4.10 aarch64

Fixes

  • BZ - 2173917 - CVE-2023-24329 python: urllib.parse url blocklisting bypass

CVEs

  • CVE-2023-24329

References

  • https://access.redhat.com/errata/RHSA-2023:3591
  • https://access.redhat.com/containers

aarch64

ubi8/openjdk-11@sha256:0f1d6186c164a49b033483267d7149d4c76c2000c72e73f5ad8783eda17554dd
ubi8/openjdk-11-runtime@sha256:f63cd6c389e0c81eca69d24c7916e52e1ed1aceca0b3b4b657d83d70a4a147dd
ubi8/openjdk-17@sha256:19a91e2e89147930798fbb00356ac6b8b9a2a90370e3c873e2caf2f8f62b82f4
ubi8/openjdk-17-runtime@sha256:22947be875be32a836429b18796a6edfdd6c49c23258d63fc4e81978f8171f74
ubi8/openjdk-8@sha256:7618cd16d63beca41b2261a14006cf66f6357eaf505b9879772fdedcb81b14cf
ubi8/openjdk-8-runtime@sha256:b0129fc2e17aa61f1a514fb15546ac73b88628ba3abe295b5ea973ef260d0a3f

ppc64le

ubi8/openjdk-11@sha256:834be27b0cbf4ea240be3ca30c225ed7ef57f4656350c009a842707d299a99d4
ubi8/openjdk-11-runtime@sha256:f98cde315e8cd87ff1e5107d321c603fa08c464a2c798024f9ead4658e2664d8
ubi8/openjdk-17@sha256:b7d1b9d1bd90394244954dd1b678e250c9c3299febe043ac7eb54b475c630907
ubi8/openjdk-17-runtime@sha256:835e91d74e624a1ac6c89515974a31b6e5bd46e3a60f67b958e7f13801347169
ubi8/openjdk-8@sha256:6c590e6c3ebac9068587ebd8a0467d82d27bb01b1b6a4a1a8fd105817cd2b03d
ubi8/openjdk-8-runtime@sha256:b6548799cd429e80b862000a9e8b649981e8b6637c1e88edafee4782af26653c

s390x

ubi8/openjdk-11@sha256:c6f009cc7a890375e659571f9121d21e6005b756587d018aa525fbf4f391c490
ubi8/openjdk-11-runtime@sha256:6944160e6362deb2f35f03279c66021502708c4809c2311d465c82b5351ff366
ubi8/openjdk-17@sha256:8a796cc82c3c8fad092c940f400144f9c4d56265e99a2b7224af0f45f52776ea
ubi8/openjdk-17-runtime@sha256:b1aa5913b86ff5daaa606cbbff563c50c64d30230f5ce14d5f2f0b7dfcba7150
ubi8/openjdk-8@sha256:f76580122479dd7d8ddfa42063b26d6574975b3551172d69cfdcced907948511
ubi8/openjdk-8-runtime@sha256:d2f95d4bae15fd27ef737bd328392c9cb4a3a74979893271edbabfadf4375624

x86_64

ubi8/openjdk-11@sha256:60b88d0608b870dea560d34e916446dacb9e2120ca90b853612eab4c7be9c38f
ubi8/openjdk-11-runtime@sha256:c56d8acd1fb58efde056226966f28b836480e6f00c8ce859cf097ce10ed2f1b6
ubi8/openjdk-17@sha256:3f4e8961cc7cb2ba3d2d0136c24be98bc5d43f4abfb8f6d4580245e4ff0df86a
ubi8/openjdk-17-runtime@sha256:c20b858050118a2b9a69f1767b624b065eafe4c0cc5c2f309c5d3e2142a8c9e3
ubi8/openjdk-8@sha256:6f753c0967220018b689cf9fe315db3459784abe379f02db4806bd4869bbe08b
ubi8/openjdk-8-runtime@sha256:16500a9a0325a46b573cd5c0ad97e74a721973807e89f889d2ca172daf00be11

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility