Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2023:5659 - Bug Fix Advisory
Issued:
2023-10-11
Updated:
2023-10-11

RHBA-2023:5659 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat OpenShift GitOps 1.7 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat OpenShift GitOps 1.7 container images are now available

Description

The Red Hat OpenShift GitOps 1.7 container images have been updated to address the following security advisory: RHSA-2023:5455 (see References)

Users of Red Hat OpenShift GitOps 1.7 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat OpenShift GitOps 1.7 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift GitOps 1.7 x86_64
  • Red Hat OpenShift GitOps for IBM Power, little endian 1.7 ppc64le
  • Red Hat OpenShift GitOps for IBM Z and LinuxONE 1.7 s390x

Fixes

  • BZ - 2234712 - CVE-2023-4527 glibc: Stack read overflow in getaddrinfo in no-aaaa mode
  • BZ - 2237782 - CVE-2023-4806 glibc: potential use-after-free in getaddrinfo()
  • BZ - 2237798 - CVE-2023-4813 glibc: potential use-after-free in gaih_inet()
  • BZ - 2238352 - CVE-2023-4911 glibc: buffer overflow in ld.so leading to privilege escalation

CVEs

  • CVE-2020-24736
  • CVE-2022-36227
  • CVE-2023-1667
  • CVE-2023-2283
  • CVE-2023-2602
  • CVE-2023-2603
  • CVE-2023-4527
  • CVE-2023-4806
  • CVE-2023-4813
  • CVE-2023-4911
  • CVE-2023-27536
  • CVE-2023-28321
  • CVE-2023-28484
  • CVE-2023-29469
  • CVE-2023-29491

References

  • https://access.redhat.com/errata/RHSA-2023:5455
  • https://access.redhat.com/containers

ppc64le

openshift-gitops-1/argocd-rhel8@sha256:30ba4132bba2de9ed291fd8e6f258220cb0b020aad62ecac554cdcf5b5e704d8
openshift-gitops-1/console-plugin-rhel8@sha256:617da15c34bfe1850cb2afd713abb4dceeed36e636725bc15c3df32b185fec8c
openshift-gitops-1/dex-rhel8@sha256:01f341c1bd456cfacf4d0907a1497cf421511aa877c1457d548175026d9dc2c6
openshift-gitops-1/gitops-rhel8@sha256:ac137a9a1f9b571a4d43c40e447c98402668aef7850cbea323c15b2330f857c6
openshift-gitops-1/gitops-rhel8-operator@sha256:a64dcbe69cfc7313d3240b28dc991816f3bbe0c97defc5d35368ed86a0b65e29
openshift-gitops-1/kam-delivery-rhel8@sha256:f5450379c4838f6fba3e58eb2b8692cac4eec62abfb773c47dbea2b3ec779a06

s390x

openshift-gitops-1/argocd-rhel8@sha256:7608fa87ea87a566abb3f32197e075f7dff8d57c0af4d0ccf9d7ff1afe1bfef3
openshift-gitops-1/console-plugin-rhel8@sha256:053db42963b244f924126f5a9b77f62429ada0939c476aed858640557e857644
openshift-gitops-1/dex-rhel8@sha256:fd63ed345b90b8818ba9bd2175b3fc9324ba5bad7c9f254a07f8723cb458fc42
openshift-gitops-1/gitops-rhel8@sha256:7d645ca7b469f5df5c60f9be55aade38e091aaa7a181c69575e15f79c2cd1f5d
openshift-gitops-1/gitops-rhel8-operator@sha256:7077e2f4437f4b317e718fe3fe571dc6845c024cee7eb9af70d62f3d1ea25cbc
openshift-gitops-1/kam-delivery-rhel8@sha256:7a84b64e4c22120d7dcc0ae0ca0861a6da13d1078c3a8a9c2b26c56db666a6ad

x86_64

openshift-gitops-1/argocd-rhel8@sha256:3a58d90279a71ab23836b1dbf7b8ce5d50ebbe05f704bbbdcfb4db800bfaaa43
openshift-gitops-1/console-plugin-rhel8@sha256:987048102ecb267bde46821c64796a354fcb8b56aad88ae240c82bf97caac18b
openshift-gitops-1/dex-rhel8@sha256:18d0d0d8ad2de276ccc5422a1b45ea8321baecdfc357b570197f098e3a02fbab
openshift-gitops-1/gitops-rhel8@sha256:a100cffdeb1eff75538407e1ed05752aa72d7a28b33d3cbdbd30ee8ad632855c
openshift-gitops-1/gitops-rhel8-operator@sha256:6bce115a96fcee3840f9ee5e99e546725c152e68efae8124a5d2b80f937f5da0
openshift-gitops-1/kam-delivery-rhel8@sha256:0970ab2583a71f603b156346bfd1ebc49340b8a446fe2ea8cf3ea5dfbdb41251

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility