Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2023:5883 - Bug Fix Advisory
Issued:
2023-10-19
Updated:
2023-10-19

RHBA-2023:5883 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat OpenShift GitOps 1.10 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat OpenShift GitOps 1.10 container images are now available

Description

The Red Hat OpenShift GitOps 1.10 container images have been updated to address the following security advisory: RHSA-2023:5837 (see References)

Users of Red Hat OpenShift GitOps 1.10 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat OpenShift GitOps 1.10 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift GitOps 1.10 x86_64
  • Red Hat OpenShift GitOps for IBM Power, little endian 1.10 ppc64le
  • Red Hat OpenShift GitOps for IBM Z and LinuxONE 1.10 s390x
  • Red Hat OpenShift GitOps for ARM 64 1.10 aarch64

Fixes

  • BZ - 2242803 - CVE-2023-44487 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

CVEs

  • CVE-2023-3341
  • CVE-2023-4527
  • CVE-2023-4806
  • CVE-2023-4813
  • CVE-2023-4911
  • CVE-2023-39325
  • CVE-2023-44487

References

  • https://access.redhat.com/errata/RHSA-2023:5837
  • https://access.redhat.com/containers

aarch64

openshift-gitops-1/argo-rollouts-rhel8@sha256:22739e14b95467946f635305a4aee2ee8170b46061d90632a7b6219df93da057
openshift-gitops-1/argocd-rhel8@sha256:11e7dc6b090cdb7fe7d2af665e6c8c32de4d72b85630440a13050586c04244c6
openshift-gitops-1/console-plugin-rhel8@sha256:feb7089061b0a817fbcd386980a1678745f6c55b3a6974fae735d221fee1b74b
openshift-gitops-1/dex-rhel8@sha256:4bd7dfd6cc35f611378ebe040ebb996b635464f19095e6399b46bcde782c83fe
openshift-gitops-1/gitops-rhel8@sha256:ce8cf3fa796c3e57eda0829a19fae9c12bcfc8f363bb54e4983c701a6e533080
openshift-gitops-1/gitops-rhel8-operator@sha256:29d617fd92d0aab1e7765c2b9b2dc58f3beb57027f43e4008c108d19d51df7c8
openshift-gitops-1/kam-delivery-rhel8@sha256:ffeb1f620c5b2c3700026625d7322a867670a9f4d27050ff05768a90828dcc9e

ppc64le

openshift-gitops-1/argo-rollouts-rhel8@sha256:ea09a1f310e6b1940da97aa3002eeea8d162fc5b8b70ee6be0f77081a7d75a71
openshift-gitops-1/argocd-rhel8@sha256:5014ceac443d67daff892dcc396fdee468001ed5266e3df94100e5fe4b029508
openshift-gitops-1/console-plugin-rhel8@sha256:a9ad8b73eab2171c87d4bd89c89991074747cdb681aab24bf6681b719d893f9e
openshift-gitops-1/dex-rhel8@sha256:21c3fde58ad50111aae187cc008c6c49838822a88293bb7c839e607eb6f012e0
openshift-gitops-1/gitops-rhel8@sha256:9e4e00cfc314a26c9129155f86f81474e2a242af7d81865470bf3e3fa5dc6f4f
openshift-gitops-1/gitops-rhel8-operator@sha256:8443367df351995397bd8a300193b074d53c471526755961fc5a831d2fd2bdee
openshift-gitops-1/kam-delivery-rhel8@sha256:7d26c2c6506013193733a14a7fd039aff52a3ec2ce44e96de96d61c08e7085b3

s390x

openshift-gitops-1/argo-rollouts-rhel8@sha256:3ae40307303db154057902fd4696e5a556824cc435918f616413520b721e56bd
openshift-gitops-1/argocd-rhel8@sha256:4c0bc2943dfe0db219ebebe36781046dbaa0a11f4714e8a24a53d95dbe9b4c53
openshift-gitops-1/console-plugin-rhel8@sha256:82e713a01ab04577c19a622fed0e86d5936f3f5d8bcd1e16eae1b821dd779d5f
openshift-gitops-1/dex-rhel8@sha256:26a01fa6799866e31819bbdaf01a36e1cdf073792a0859fcf20a7b2698cb29d2
openshift-gitops-1/gitops-rhel8@sha256:7d91989171700018d554b02c35c019a0dbb1958b0fa19be786759777034ba256
openshift-gitops-1/gitops-rhel8-operator@sha256:7a815e4facf6c717e2f6423e9f6998abef5f1e63a7e18ec39bc3b02a2aef51f4
openshift-gitops-1/kam-delivery-rhel8@sha256:c62db49e42798c66cb84b934e9b9beb3e36a983cf6c342a7c7b6cf2e798cdad3

x86_64

openshift-gitops-1/argo-rollouts-rhel8@sha256:e7afdae558eaa90fe6e411f521fce554f732cb2121d8590e3861ddbcc0836a9c
openshift-gitops-1/argocd-rhel8@sha256:1cc43f92c9ce61b8e9abb506071dab5da843cb7d69864189671c90ba5034e581
openshift-gitops-1/console-plugin-rhel8@sha256:16c3b3b8096caf8bf2d890c9fff195448cdee6586ef3a0bda9167ba4ce7ec5ea
openshift-gitops-1/dex-rhel8@sha256:50550b1a2d4e62292e3437b1dd558419ceb668cc17d0b838f41b22b132d27d0c
openshift-gitops-1/gitops-rhel8@sha256:c0e966469b09af56fc5023cb22036bb5962c8b62a62c64478c2325b2371b28a0
openshift-gitops-1/gitops-rhel8-operator@sha256:49c5fb7e519d7a09b0e3a94578d5f5c0789bce3fdc254f0835274979cc556038
openshift-gitops-1/kam-delivery-rhel8@sha256:8d6c3e78af252cc6888b2fed918db5e10d251862df8497402236b12077af3bab

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility