Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2023:5503 - Bug Fix Advisory
Issued:
2023-10-09
Updated:
2023-10-09

RHBA-2023:5503 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat Openshift distributed tracing 2.9 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat Openshift distributed tracing 2.9 container images are now available

Description

The Red Hat Openshift distributed tracing 2.9 container images have been updated to address the following security advisory: RHSA-2023:5455 (see References)

Users of Red Hat Openshift distributed tracing 2.9 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat Openshift distributed tracing 2.9 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift distributed tracing 2 x86_64
  • Red Hat OpenShift distributed tracing for Power, little endian 2 ppc64le
  • Red Hat OpenShift distributed tracing for IBM Z and LinuxONE 2 s390x

Fixes

  • BZ - 2234712 - CVE-2023-4527 glibc: Stack read overflow in getaddrinfo in no-aaaa mode
  • BZ - 2237782 - CVE-2023-4806 glibc: potential use-after-free in getaddrinfo()
  • BZ - 2237798 - CVE-2023-4813 glibc: potential use-after-free in gaih_inet()
  • BZ - 2238352 - CVE-2023-4911 glibc: buffer overflow in ld.so leading to privilege escalation

CVEs

  • CVE-2023-4527
  • CVE-2023-4806
  • CVE-2023-4813
  • CVE-2023-4911
  • CVE-2023-29491
  • CVE-2023-30630

References

  • https://access.redhat.com/errata/RHSA-2023:5455
  • https://access.redhat.com/containers

ppc64le

rhosdt/jaeger-agent-rhel8@sha256:3cb87878543c8fa694d3b482be83bf9e5eed21434f8a6af87ab3223558f1f2b9
rhosdt/jaeger-all-in-one-rhel8@sha256:2a64e250ddace172c13ae230c21ae2797ce798eb06879d45beaf7b4dae07bffd
rhosdt/jaeger-collector-rhel8@sha256:ed78f503275a95b0a8e497dffba30dbaf1a1f5e667ef9cccf1e1221265b3e84d
rhosdt/jaeger-es-index-cleaner-rhel8@sha256:6195ed2492301f432d778c5013048c71358e2a7eaee299ca0aa4692ca724242b
rhosdt/jaeger-es-rollover-rhel8@sha256:168af4c8a436f94356371b6b0ff81788d98c590663cbf766c0817442d511ae67
rhosdt/jaeger-ingester-rhel8@sha256:10c6b253d81ce6ba5360a7177a04c1d84dc32cee8da9fca1425539d0ba2969d4
rhosdt/jaeger-query-rhel8@sha256:476ff23ef9e6872f5bbe980defa86e36ef6a8e201451aa99c5ac21d6ecbff197
rhosdt/jaeger-rhel8-operator@sha256:804f88320ac0ade1493c994b05ebdf2ee3b392d053b5889b28dc8db11b77479a
rhosdt/opentelemetry-collector-rhel8@sha256:1aae1736d641a415202cf5a7858cc8f64a7d022333291d6d086c19b13d63cf95
rhosdt/opentelemetry-rhel8-operator@sha256:9f2a09057d7bc1826b2f3588a362e361db0781721b39e9491f178415f8adbd28
rhosdt/tempo-gateway-opa-rhel8@sha256:8915b116837e121903d069fa6ad69cdeff70fc4ffe9bbfb4d2e0dea23f1f95d0
rhosdt/tempo-gateway-rhel8@sha256:20ccddd67c7cb5df01e3b443f0173d8eca365b0663d22634fe74feea3c580b18
rhosdt/tempo-query-rhel8@sha256:bc7971917248260655021aee0445c538c17b4a33c06096d59680a355c6aa0703
rhosdt/tempo-rhel8@sha256:852cf97729fa92c052878c5106949305556c90a920441464aa6f12eaad36404e
rhosdt/tempo-rhel8-operator@sha256:8fd5fe69831e702957e286cc768b634f16915110d7e3161b8d27cc3dbd4e151c

s390x

rhosdt/jaeger-agent-rhel8@sha256:75f72e2747a4b296f3fcb60dbebc9a50d26bc23ba45d24ab83be2affd179a641
rhosdt/jaeger-all-in-one-rhel8@sha256:4867f8798357a16ecd00056a0d056f1567891d88d2f6a692725f228fc3a50897
rhosdt/jaeger-collector-rhel8@sha256:b1aa53e7da0920f471f485d51ce49f4caa603b58088dd6669435b8e87b636446
rhosdt/jaeger-es-index-cleaner-rhel8@sha256:3e69a7285c8854b00e18b32b7a345d9456bd22700316117841c2b881c7eba0f9
rhosdt/jaeger-es-rollover-rhel8@sha256:1ba33dd0cfe22aedc3245626b0183b4743f0ece94fabbd6092e08a044e5bc1ed
rhosdt/jaeger-ingester-rhel8@sha256:e6b2eca76d84f0e59f6f5ba89efff47aa6bde858682a06a68493a3fd5acff6a9
rhosdt/jaeger-query-rhel8@sha256:9e8fe055ea79a727fc16a89cc493c9a54fe34040150be8dbfcc3b49198efffdc
rhosdt/jaeger-rhel8-operator@sha256:5e0e7820fce7c8e7dcf82a11747b068d122d30445f09a7410d2b661fedae52f4
rhosdt/opentelemetry-collector-rhel8@sha256:e1cb82f0f1c6e07c767be6f9925291372586fc3c94757e26b29b19b1a63d58e6
rhosdt/opentelemetry-rhel8-operator@sha256:ada4f65595c3ca05fba80a08065aa7cba61d491fdff5fdfddb288aeb47897ca8
rhosdt/tempo-gateway-opa-rhel8@sha256:e50df7fc98a6d0e5626a7ccc97e6857ca6e6230a1a2e13edb8d84fa5ad70dd40
rhosdt/tempo-gateway-rhel8@sha256:c4606fed7bb3a284d8e9fcff7a95ae0314d3898505eac519f59f2bcc428fb3a7
rhosdt/tempo-query-rhel8@sha256:d2d92c4f93be5751fed87e78b6b12aef8a3607c261dfd6c3b68f5367d6db4c44
rhosdt/tempo-rhel8@sha256:11f371c9d05b12f034116a4c3c20a0e851e8a3f018c61d1119c4fce94fed06c0
rhosdt/tempo-rhel8-operator@sha256:11ce298d0e8fb85475d4c49fb3cca73f76a8871bab92be3e19b56be7935618e1

x86_64

rhosdt/jaeger-agent-rhel8@sha256:211c917e683e8304ef0ce95376c0cd5996de7ee4339ec36ff51f7d33a87094cc
rhosdt/jaeger-all-in-one-rhel8@sha256:7f450e0bc65dc03f7ff19b31423ff1aa8a170b94ba46f499f74ccb6388dae4be
rhosdt/jaeger-collector-rhel8@sha256:16bee9d9323b08e2762242f10260eff87be931b2f2425254d562e4a5924a46c6
rhosdt/jaeger-es-index-cleaner-rhel8@sha256:c51b31228ba30f0e265e194611ca3a418734b356464f1b36a3f0dace4e6ac062
rhosdt/jaeger-es-rollover-rhel8@sha256:65b69ca66de058571730665dabbd10cf026e8a5176b43aaf0e236df27c70a3ab
rhosdt/jaeger-ingester-rhel8@sha256:dc05f9a92f12dc79bbaa8da34a299678d78ad156940799d042d30f09de3d0ee8
rhosdt/jaeger-query-rhel8@sha256:0bfe8cf0935631c489aa65016e165b6a9ef15b75ec6330b9339d5d3490a06f85
rhosdt/jaeger-rhel8-operator@sha256:dc4006b0c26ff6de0647af06a2e5c4dc926e35d78caaf836658726f4b906612a
rhosdt/opentelemetry-collector-rhel8@sha256:2458d6e51e11c4c281da8a06837936dfe76ed48759e1b1ebecf3a7bafbceb0f8
rhosdt/opentelemetry-rhel8-operator@sha256:a417c43fc1e8669fde7a3b2490728f9b3d89006939fdd0d3c1375821cf767a9b
rhosdt/tempo-gateway-opa-rhel8@sha256:8072dff12ea92805621a8e73579a93900f209d39d206a5f0b7fb4a0a994ed503
rhosdt/tempo-gateway-rhel8@sha256:49e69e4d60c84b01c08beca12da9ce67d6d16d82923f0d57969f23747101f38a
rhosdt/tempo-query-rhel8@sha256:be2cbd405bba8b3a610ada2c302cdfaa5e80761b30dd7520e8129dcb29f59dab
rhosdt/tempo-rhel8@sha256:7259f53768e9d541541070ea23903ea24aecf5df2344bf87d51147a05a727a35
rhosdt/tempo-rhel8-operator@sha256:960f412726ae8c49526f8069adfe54b7ac776bb0cd3ffa6a596847f2060746a4

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility