Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2023:5892 - Bug Fix Advisory
Issued:
2023-10-19
Updated:
2023-10-19

RHBA-2023:5892 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat OpenShift GitOps 1.9 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat OpenShift GitOps 1.9 container images are now available

Description

The Red Hat OpenShift GitOps 1.9 container images have been updated to address the following security advisory: RHSA-2023:5837 (see References)

Users of Red Hat OpenShift GitOps 1.9 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat OpenShift GitOps 1.9 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift GitOps 1.9 x86_64
  • Red Hat OpenShift GitOps for IBM Power, little endian 1.9 ppc64le
  • Red Hat OpenShift GitOps for IBM Z and LinuxONE 1.9 s390x
  • Red Hat OpenShift GitOps for ARM 64 1.9 aarch64

Fixes

  • BZ - 2242803 - CVE-2023-44487 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

CVEs

  • CVE-2023-39325
  • CVE-2023-44487

References

  • https://access.redhat.com/errata/RHSA-2023:5837
  • https://access.redhat.com/containers

aarch64

openshift-gitops-1/argo-rollouts-rhel8@sha256:e542bb9fd8ec1147ed6088e2d6d0534e2abf5b6a5503cc190a904c14120ba730
openshift-gitops-1/argocd-rhel8@sha256:152a772e7e0c0ef45d73e0bc0336adae9c983655832209a9c4f41179c2c242ce
openshift-gitops-1/console-plugin-rhel8@sha256:d784300b1f79689ea88ba82a5e730cb4cb569913c67339e791691bee985aaee0
openshift-gitops-1/dex-rhel8@sha256:c91a790da8b1bfc016a0ce30da8d3e2b6172f654b8ef1b289f9e79030002aeee
openshift-gitops-1/gitops-rhel8@sha256:0e6c998a6669005b7d399987b9aebf78793bffef335718edbb37d366de5566df
openshift-gitops-1/gitops-rhel8-operator@sha256:061ba3eca403dacbc47875b7360ce6e8332078074f0648762c1460c4ba44e3b1
openshift-gitops-1/kam-delivery-rhel8@sha256:c888225e14b26ab6fb4b8aae3580b9b309b076e0f08eca6d60ec58e0eb14e174

ppc64le

openshift-gitops-1/argo-rollouts-rhel8@sha256:a966f21550f734b14c6f2eaf98e3c85412841eb2123405e5b5e217955b724013
openshift-gitops-1/argocd-rhel8@sha256:98438a8b1212918f430f4a35c2b31ebf49fbfd0a62d2621ff769f0227e613488
openshift-gitops-1/console-plugin-rhel8@sha256:051828b58160afa7d5ddccb3e3160a96d9715fef6d9b1464751a390d05bdaea5
openshift-gitops-1/dex-rhel8@sha256:4ade9c7527f62751a66b84098be026b306482dca58884bba731f3616e78e1929
openshift-gitops-1/gitops-rhel8@sha256:f4cdeda24349d6d54eb46aeec9dc3e3542c95510f0fe303a7ba01270729dbc74
openshift-gitops-1/gitops-rhel8-operator@sha256:09beaf9dafcbc2c94509fc162421e1f261b0029f9c9798a6ffbee6b5e118dcac
openshift-gitops-1/kam-delivery-rhel8@sha256:a4c13553813177419030549b62db5df6941f0ca068ea4d79f32d686e2b3a6639

s390x

openshift-gitops-1/argo-rollouts-rhel8@sha256:189296091140ead77c7b41a10116d5da56a0340c04bb560b8d04f9cf51f787ef
openshift-gitops-1/argocd-rhel8@sha256:45a91310041dd63b8561fc80a605f3de7762ab520ccab8ca086b3223f32c89fe
openshift-gitops-1/console-plugin-rhel8@sha256:c3471f9c2c950d8fa0142c3aa2793461a18796ec1e46bf3f4a43cb47e1009ba9
openshift-gitops-1/dex-rhel8@sha256:82368f841f5d9daf10c9f6a6832db60fc22329a3f71a0e10129a79a012dbe364
openshift-gitops-1/gitops-rhel8@sha256:80b67d0136fee658318c669b8eae0d45cfea914fa7b4da9ceef00bdd241519a0
openshift-gitops-1/gitops-rhel8-operator@sha256:c1ffa42ee78090150cf2ec288e8f2a74f2f215d16bd8a23b5785e34e3f43aac8
openshift-gitops-1/kam-delivery-rhel8@sha256:d743e44e9785ad7fe7fb35c9f53174d9f004b52c779aa94574ec8bbc7241a7d4

x86_64

openshift-gitops-1/argo-rollouts-rhel8@sha256:1c936b4a4d8bb029566b41bde8f24f6d78590459127b90e7aa84746c69af6809
openshift-gitops-1/argocd-rhel8@sha256:bb3214bf6847ae5d98ae148203f0b5977d21fddfbe1af186f661c6425eadd111
openshift-gitops-1/console-plugin-rhel8@sha256:ca3e624c91aab481f515685b8a795ed2b88347769d84ccaad4df6c4839b08dac
openshift-gitops-1/dex-rhel8@sha256:d93014441d7f50c94508e4c4437916b7d4dd51b924abdf79c09f8c91455a88ec
openshift-gitops-1/gitops-rhel8@sha256:3495fff01758df774cce9b60e15f021f1fc92e5a3d7d30092273b6d2fb703b4e
openshift-gitops-1/gitops-rhel8-operator@sha256:37135a210a5beb0d5df9c6a826ad471efb4b114e18c4588ce8195a25090ad932
openshift-gitops-1/kam-delivery-rhel8@sha256:8190e60a8c9fcf94375c7bea8eda67b666dd3010faaeb4a64e6f8810a8b4e393

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility