Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2023:5702 - Bug Fix Advisory
Issued:
2023-10-16
Updated:
2023-10-16

RHBA-2023:5702 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated RHEL-8 based Middleware Containers container images

Type/Severity

Bug Fix Advisory

Topic

Updated RHEL-8 based Middleware Containers container images are now available

Description

The RHEL-8 based Middleware Containers container images have been updated to address the following security advisory: RHSA-2023:5455 (see References)

Users of RHEL-8 based Middleware Containers container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The RHEL-8 based Middleware Containers container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift Container Platform 4.10 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.9 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.9 for RHEL 7 x86_64
  • Red Hat OpenShift Container Platform 4.8 for RHEL 7 x86_64
  • Red Hat OpenShift Container Platform 3.11 x86_64
  • Red Hat OpenShift Container Platform for Power 4.10 for RHEL 8 ppc64le
  • Red Hat OpenShift Container Platform for Power 4.9 for RHEL 8 ppc64le
  • Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.10 for RHEL 8 s390x
  • Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.9 for RHEL 8 s390x

Fixes

  • BZ - 2234712 - CVE-2023-4527 glibc: Stack read overflow in getaddrinfo in no-aaaa mode
  • BZ - 2237782 - CVE-2023-4806 glibc: potential use-after-free in getaddrinfo()
  • BZ - 2237798 - CVE-2023-4813 glibc: potential use-after-free in gaih_inet()
  • BZ - 2238352 - CVE-2023-4911 glibc: buffer overflow in ld.so leading to privilege escalation

CVEs

  • CVE-2020-24736
  • CVE-2023-1667
  • CVE-2023-2283
  • CVE-2023-2602
  • CVE-2023-2603
  • CVE-2023-3341
  • CVE-2023-4527
  • CVE-2023-4806
  • CVE-2023-4813
  • CVE-2023-4911
  • CVE-2023-27536
  • CVE-2023-28321
  • CVE-2023-28484
  • CVE-2023-29469
  • CVE-2023-29491
  • CVE-2023-30630
  • CVE-2023-34969

References

  • https://access.redhat.com/errata/RHSA-2023:5455
  • https://access.redhat.com/containers

ppc64le

fuse7/fuse-console-rhel8@sha256:93fb9038ab03cbb7151781d33ff85dd65bc5970b90d8e27f64b7c494ee3f4735
fuse7/fuse-console-rhel8-operator@sha256:407e531abea4bf720b260128e2c88ba5cc9a62643db8bb344189c22f9bafa0e3
fuse7/fuse-java-openshift-jdk11-rhel8@sha256:132c16ec03f81276cf0b2530dd8001d5c825838f92ab05bfa756f081c6a801fa
fuse7/fuse-java-openshift-jdk17-rhel8@sha256:9c5dd0f2781dcfef8b47ff705d611207b07a61e0b42425d2c5bdcdb6a5e0ee68

s390x

fuse7/fuse-console-rhel8@sha256:665b515c2b90e589427848a3dd0e2f723b271c0318092e796c3ad04a2bc38d5a
fuse7/fuse-console-rhel8-operator@sha256:07a1a8fc89d2c64911ed22f6bb50bda0326822cf50c70c0c22aed7460cb2473b
fuse7/fuse-java-openshift-jdk11-rhel8@sha256:dbde31c1e5295a8a52121e21c34b2d3c7a18abae02e0ed954f63a3ce4745d0c0
fuse7/fuse-java-openshift-jdk17-rhel8@sha256:ad9b1c85a0e14cd5cf44976e6a1d3a9cc3a815e66b5c6511df0be67e4275d2dc

x86_64

fuse7/fuse-apicurito-generator-rhel8@sha256:53a0ea175549cdb0a10d6912477001231e50f21a9c7b06fcbf10b0f4b2b4217e
fuse7/fuse-apicurito-rhel8@sha256:3289815c92b52218779ed51f054ccb2ad5b054a4367623747a4844d37fbd8431
fuse7/fuse-apicurito-rhel8-operator@sha256:3bb6dfa8d66fe92477bbf6654dc3b0123cdce095fc5ba52bb4c74102afbb7aa5
fuse7/fuse-console-rhel8@sha256:2609b2f7e0629305d349964bf121fb9481bf2e6362e55bec7a771ecb634d4f4c
fuse7/fuse-console-rhel8-operator@sha256:f01b51f57e581f3d1e616f811401c810787326a11f912f22e0d9a96b6062bf90
fuse7/fuse-java-openshift-jdk11-rhel8@sha256:b86a96b18ab732bf65c8ac54cc698ef99ef5f69207ba89dce2161e85d4b1fa4b
fuse7/fuse-java-openshift-jdk17-rhel8@sha256:7c2ffbcb74ca75f38aa64219e144df68b17c97397ef77522131e99583cb34343
fuse7/fuse-java-openshift-rhel8@sha256:e85e88a2a042a7267d1cb54662801f292cbfcc6e5beb5135219c5fa245a56685
fuse7/fuse-karaf-openshift-jdk11-rhel8@sha256:87f09e869bbf855ffc7592a877f202bf0bc6d237d5cc929961b0b525206fbba8
fuse7/fuse-karaf-openshift-jdk17-rhel8@sha256:ad427f5e0cd3a43d6114f3de8587452e9f7cf543db4715afb2e3607b59ccf45c
fuse7/fuse-karaf-openshift-rhel8@sha256:52c4352515918a79c0d33a6f072b7db51ecc7ccb81e328068aa06429a1e656ba
fuse7/fuse-online-builder-rhel8@sha256:02eb27e3b589952765c792c97aed002474b239aa7ccd2ecf173d18efb54fa670
fuse7/fuse-online-meta-rhel8@sha256:05e1a6ef5d76f36fe1fb4031725dc884cf4beb7ee46f0c5bafc7d0be12b4b756
fuse7/fuse-online-rhel8-operator@sha256:92013544a8b78241a9290ad5e1da675cc1ea7ac9bb277d212e3bc35aa2648456
fuse7/fuse-online-server-rhel8@sha256:a29ad0630a4b89a23c7c8e66a108896d3942bc8fd1a8a15679526755e41aad28
fuse7/fuse-online-ui-rhel8@sha256:f7cad36f02c4a21b4ed7090f39f096e92e5cba26705af00e9e3a63791786a1a5
fuse7/fuse-online-upgrade-rhel8@sha256:c4cc363aff7f20401aaa7f49a6d883a2a119c0cd9a467e6c60ab64c647724c51
fuse7/fuse-postgres-exporter-rhel8@sha256:3eebac644f4fb2b17d6c95942ec634d23d42e960aef7cc2462947281f5e4c752

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility