Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2023:4046 - Bug Fix Advisory
Issued:
2023-07-13
Updated:
2023-07-13

RHBA-2023:4046 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat Software Collections for Red Hat Enterprise Linux 7 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat Software Collections for Red Hat Enterprise Linux 7 container images are now available

Description

The Red Hat Software Collections for Red Hat Enterprise Linux 7 container images have been updated to address the following security advisory: RHSA-2023:4039 (see References)

Users of Red Hat Software Collections for Red Hat Enterprise Linux 7 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat Software Collections for Red Hat Enterprise Linux 7 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat Software Collections (for RHEL Server) 1 for RHEL 7 x86_64
  • Red Hat Software Collections (for RHEL Server for System Z) 1 for RHEL 7 s390x
  • Red Hat Software Collections (for RHEL Server for IBM Power LE) 1 for RHEL 7 ppc64le

Fixes

  • BZ - 2209494 - CVE-2023-31124 c-ares: AutoTools does not set CARES_RANDOM_FILE during cross compilation
  • BZ - 2209497 - CVE-2023-31130 c-ares: Buffer Underwrite in ares_inet_net_pton()
  • BZ - 2209501 - CVE-2023-31147 c-ares: Insufficient randomness in generation of DNS query IDs
  • BZ - 2209502 - CVE-2023-32067 c-ares: 0-byte UDP payload Denial of Service

CVEs

  • CVE-2023-31124
  • CVE-2023-31130
  • CVE-2023-31147
  • CVE-2023-32067

References

  • https://access.redhat.com/errata/RHSA-2023:4039
  • https://access.redhat.com/containers

ppc64le

rhscl/nodejs-14-rhel7@sha256:53d2313d3a22c554d95a1e6b694d8582b8c690eaf8d781486e4182850a7578ae
ubi7/nodejs-14@sha256:53d2313d3a22c554d95a1e6b694d8582b8c690eaf8d781486e4182850a7578ae
rhscl/perl-530-rhel7@sha256:b71ff92f2e0434b5547c01bf4089e9707b12193ac93930597ca74888ce8f4eda
ubi7/php-73@sha256:63b1ce38e537cae555e730596e6aef48ea3fe1f0f178946b2e42f1e32b002530
rhscl/php-73-rhel7@sha256:63b1ce38e537cae555e730596e6aef48ea3fe1f0f178946b2e42f1e32b002530
ubi7/python-38@sha256:e00f34c039c40a03328751d0c48d723e17288a699564205252a296a5d8a6ff48
rhscl/python-38-rhel7@sha256:e00f34c039c40a03328751d0c48d723e17288a699564205252a296a5d8a6ff48
rhscl/ruby-27-rhel7@sha256:b222b596eba6db4625f3634110227d2ce1f7aa33a8a0a355f49e2a18361e7f5a
ubi7/ruby-27@sha256:b222b596eba6db4625f3634110227d2ce1f7aa33a8a0a355f49e2a18361e7f5a
ubi7/ruby-30@sha256:871b63439886dc31a3ad846c2a41f678bb1c9ea3f6683f4ddcb3c23ea1d2f6c1
rhscl/ruby-30-rhel7@sha256:871b63439886dc31a3ad846c2a41f678bb1c9ea3f6683f4ddcb3c23ea1d2f6c1
rhscl/s2i-base-rhel7@sha256:57404fdd1f37e2cef0dbd8e21b78e55f33bcd5ccc581f73e65acede88e2b97a9
ubi7/s2i-base@sha256:57404fdd1f37e2cef0dbd8e21b78e55f33bcd5ccc581f73e65acede88e2b97a9

s390x

rhscl/nodejs-14-rhel7@sha256:ddc6f06f11c1215c1baeab2c98fa4858341f061f5ca6d0b46327af9393a38a7d
ubi7/nodejs-14@sha256:ddc6f06f11c1215c1baeab2c98fa4858341f061f5ca6d0b46327af9393a38a7d
rhscl/perl-530-rhel7@sha256:706a783fe6dd8c2d80a00ee7521d878dc1a9a2d2f7f7211ee6c1663fa139d887
ubi7/php-73@sha256:130a0d3a9749c9208d270059493aa94df8f93a5b3a06b1b20a4543450ccd568a
rhscl/php-73-rhel7@sha256:130a0d3a9749c9208d270059493aa94df8f93a5b3a06b1b20a4543450ccd568a
ubi7/python-38@sha256:7892e57d1f0f997731ae663963f55edc10885bed8886aee9566e01670d03f74a
rhscl/python-38-rhel7@sha256:7892e57d1f0f997731ae663963f55edc10885bed8886aee9566e01670d03f74a
rhscl/ruby-27-rhel7@sha256:b68aac9fc144990436f13542bd4e3ddc6f84d980fe43a3ffc9c95b14783dade3
ubi7/ruby-27@sha256:b68aac9fc144990436f13542bd4e3ddc6f84d980fe43a3ffc9c95b14783dade3
ubi7/ruby-30@sha256:e993db1c48a44bfa7f73f5a68df5624b880dae37d5902ede92ff8f5a51e850b2
rhscl/ruby-30-rhel7@sha256:e993db1c48a44bfa7f73f5a68df5624b880dae37d5902ede92ff8f5a51e850b2
rhscl/s2i-base-rhel7@sha256:6ac023915d372234e4e1ab8acd2a9a4824a49889cb349a5830e3a5f00714d9ba
ubi7/s2i-base@sha256:6ac023915d372234e4e1ab8acd2a9a4824a49889cb349a5830e3a5f00714d9ba

x86_64

rhscl/nodejs-14-rhel7@sha256:2896a4cb4c4aeb4ea95d712a6b4bc557f9e837d272d8fa1c44ba1942c273b3b8
ubi7/nodejs-14@sha256:2896a4cb4c4aeb4ea95d712a6b4bc557f9e837d272d8fa1c44ba1942c273b3b8
rhscl/perl-530-rhel7@sha256:a9e3cd825d5881f6d145d44374bc6fba52ad57fc50e953627062290da0f6437f
ubi7/php-73@sha256:505ae73c3a961eb0707ec4f5b241ba8e4a7815c143a0df5734e5c51d074af28c
rhscl/php-73-rhel7@sha256:505ae73c3a961eb0707ec4f5b241ba8e4a7815c143a0df5734e5c51d074af28c
ubi7/python-38@sha256:cb155dca5e3446ee4bdb326264e7d8e546e24efae3ab76ac6370a53c6af304db
rhscl/python-38-rhel7@sha256:cb155dca5e3446ee4bdb326264e7d8e546e24efae3ab76ac6370a53c6af304db
rhscl/ruby-27-rhel7@sha256:c5c73ef3c8c4fed6d2f612c160795303b71a54c786184cf38c6b110037b332e5
ubi7/ruby-27@sha256:c5c73ef3c8c4fed6d2f612c160795303b71a54c786184cf38c6b110037b332e5
ubi7/ruby-30@sha256:3fb002b0e9ddc248f44df702f132ee408510c5064342038f718e1ca1a1bc19ed
rhscl/ruby-30-rhel7@sha256:3fb002b0e9ddc248f44df702f132ee408510c5064342038f718e1ca1a1bc19ed
rhscl/s2i-base-rhel7@sha256:6a458dd2443ecb7c9de5760b7af99a2de65127c754981e70f26b0f5749e0dd76
ubi7/s2i-base@sha256:6a458dd2443ecb7c9de5760b7af99a2de65127c754981e70f26b0f5749e0dd76

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility