Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2023:5939 - Bug Fix Advisory
Issued:
2023-10-19
Updated:
2023-10-19

RHBA-2023:5939 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat Advanced Cluster Management for Kubernetes 2.5 for RHEL 8 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat Advanced Cluster Management for Kubernetes 2.5 for RHEL 8 container images are now available

Description

The Red Hat Advanced Cluster Management for Kubernetes 2.5 for RHEL 8 container images have been updated to address the following security advisory: RHSA-2023:5837 (see References)

Users of Red Hat Advanced Cluster Management for Kubernetes 2.5 for RHEL 8 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat Advanced Cluster Management for Kubernetes 2.5 for RHEL 8 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat Advanced Cluster Management for Kubernetes 2 for RHEL 8 x86_64

Fixes

  • BZ - 2242803 - CVE-2023-44487 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)

CVEs

  • CVE-2020-24736
  • CVE-2022-36227
  • CVE-2023-0361
  • CVE-2023-1667
  • CVE-2023-2283
  • CVE-2023-2602
  • CVE-2023-2603
  • CVE-2023-4527
  • CVE-2023-4806
  • CVE-2023-4813
  • CVE-2023-4911
  • CVE-2023-27536
  • CVE-2023-28321
  • CVE-2023-28484
  • CVE-2023-29469
  • CVE-2023-29491
  • CVE-2023-34969
  • CVE-2023-38408
  • CVE-2023-44487

References

  • https://access.redhat.com/errata/RHSA-2023:5837
  • https://access.redhat.com/containers

aarch64

rhacm2/lighthouse-agent-rhel8@sha256:401203e3cea5151088b6988e36d59d974b0dc517560ee1fb0461446ba90f0182
rhacm2/lighthouse-coredns-rhel8@sha256:bb849e68b2ab668b7820f55145e238d8aef9f12ab2f5989a4e371a1a2498dd02
rhacm2/subctl-rhel8@sha256:4a89a844832b08246c26c3e29e299eb295aac5b3a156be61046b87bacc536d36
rhacm2/submariner-gateway-rhel8@sha256:36f628d4c1e0c8019ab2df2398c948a9697786af03f875d307d749859fb5c921
rhacm2/submariner-globalnet-rhel8@sha256:ae0a21ef9fe1e8a8b3d2cb86c5c4078244162a39cd53763ea7925390ac68b59d
rhacm2/submariner-networkplugin-syncer-rhel8@sha256:889655a6f5f07dc7d44c06fdce947619995db3220918a83a085d889819395c37
rhacm2/submariner-rhel8-operator@sha256:bbdc85f895e680ae5af86af99ac9a47f6dc1a8f84b764a0438dcd80628d4768f
rhacm2/submariner-route-agent-rhel8@sha256:e17f8204e5e0a60641a2cde7e670ef32ee16dcc2126faadcaedbe751a5029a38
rhacm2/volsync-mover-rclone-rhel8@sha256:0c9224b6a0a70f03f993f18bd4567c0b03f127205b4c6a018cee375950dca79b
rhacm2/volsync-mover-restic-rhel8@sha256:61e35d4bb4a9f4dd09acb5f92e7650c31de78381a927dfb9ec2e1a2250d5538d
rhacm2/volsync-mover-rsync-rhel8@sha256:d90b513cb5651cbfbc4fa9232eb3853b64530e1e19be6fa14adb70e9d882f0d1
rhacm2/volsync-rhel8@sha256:576c63f8f76b7bc93ae5d8988d044e0bcb0e0d4988143fa55f7b24c9e38d1895

ppc64le

rhacm2/lighthouse-agent-rhel8@sha256:1cc3475de7dfa54b2d382327f07a0a00f5cb273c604d0882ff11dd5cfc9c0f2b
rhacm2/lighthouse-coredns-rhel8@sha256:0833607d420aff1af2813920b3327ab5cdcef67c44286519729928901bd819ec
rhacm2/subctl-rhel8@sha256:ec00f606f79e1e2fb8db07159aa93fa0167f13760db6fde83116134648f1d804
rhacm2/submariner-gateway-rhel8@sha256:43ca5fa7533f7a5c0220799608b9500db444fccf6aca62c72746e2a750700b8a
rhacm2/submariner-globalnet-rhel8@sha256:adf0c7ea6b202679d7c3c3150b6bcedd42abfc6800a4ae94e4f9e0221461e36f
rhacm2/submariner-networkplugin-syncer-rhel8@sha256:42eace3039e9cf49606a9486a8b83daf185bcecbe3e28a640d0c662619d3db65
rhacm2/submariner-rhel8-operator@sha256:7c4a6e1cc42d318bbb05783ff40e3cbdb318cf30db427e6c1712c56824b727c6
rhacm2/submariner-route-agent-rhel8@sha256:c9b59e2d93a6084cd8ba966369ad25e67bb7a7475bf407ea2ef24f2d35535dee
rhacm2/volsync-mover-rclone-rhel8@sha256:313239bf599996fd019dd354df0759103897cc181bbfad0850aca7b6c32dc527
rhacm2/volsync-mover-restic-rhel8@sha256:1b8e21006c7e9ca023a5e48007f797bcaed4e2b0a9df8d0687191168b7ce7c79
rhacm2/volsync-mover-rsync-rhel8@sha256:47e8d3a1f102159688ab57757853c5318a90924a9bbe903e59b07e9bd699c290
rhacm2/volsync-rhel8@sha256:1098bb59571ce84bf497ac1480dc5f7de9dd47c14daca24bbcf9cb4c76bdee75

s390x

rhacm2/lighthouse-agent-rhel8@sha256:01e49ab1fbab4662db376cbc1fe435c4a3ee17a5f7a4d88d6d28d7080c57b7f7
rhacm2/lighthouse-coredns-rhel8@sha256:d5d82c97fb673838c5971854c5b42d7308a47b48b4ae489f10c71437758bee5f
rhacm2/subctl-rhel8@sha256:cf20aafff6eb947afbf1de36126d0ec06da2257552d0e37b2e732bd7226d8639
rhacm2/submariner-gateway-rhel8@sha256:a3491da58acfca72a43afa485df4c37a58222a3e92a5d1c16bba87fe643143e1
rhacm2/submariner-globalnet-rhel8@sha256:17bbd5fc64aedc435d77cc9d4fdc175601f779d339b2456521770dcff0743e38
rhacm2/submariner-networkplugin-syncer-rhel8@sha256:330553e8c7a91cb220586a75c3a86fa0f53c6c7fd58ed57473ed401c5d7da366
rhacm2/submariner-rhel8-operator@sha256:d87967761a17229372fdf65fbd0632a817f4f9f49344ab8b32099907896d25d2
rhacm2/submariner-route-agent-rhel8@sha256:bc8d81addf1fea501e70e76fde0188ced8a15f743a0b6e1a8ca7bd43d6e3314a
rhacm2/volsync-mover-rclone-rhel8@sha256:1a0d330c900278ea069f0442bd68da21b0dcb52796dcf15bdbdddb413670d1a8
rhacm2/volsync-mover-restic-rhel8@sha256:03a9f3257c6ac1042c7c156d1c6724153c8f603a78a35c8f9eb5b3f25f67cc7a
rhacm2/volsync-mover-rsync-rhel8@sha256:3a6c13fbce89cdf67b0efa639a73be97a234dd075dafc2eba3b06494377d503d
rhacm2/volsync-rhel8@sha256:49983a633616955d9277971a97cafa5b46f90d497f682bb748fff55fc21a73a4

x86_64

rhacm2/lighthouse-agent-rhel8@sha256:f3bccdc3598a29b8c79ae55ccda2ccfb260b2ae2d773152d4937cc6f6b278c86
rhacm2/lighthouse-coredns-rhel8@sha256:f939b3254260c80ce097fdf2d637462c9e69c4aa14522cfed52776b79cba8bad
rhacm2/subctl-rhel8@sha256:d6fe192b61efd91c0fed17598595d033818940ff2eb3d45f003e8e7664a412e2
rhacm2/submariner-gateway-rhel8@sha256:69a3f94769ef2b216285e69e586fc1eb858e72bf71c265f9e0eedf9963656449
rhacm2/submariner-globalnet-rhel8@sha256:ff75adbf940c980008d0fb80fd83bc0fe5a34ebcd91588da23677c9b85a4a63a
rhacm2/submariner-networkplugin-syncer-rhel8@sha256:b6dfcc018bf58f25963f30b09e7621f548b8f8af456ceec2e6c7e87bf92f6e24
rhacm2/submariner-rhel8-operator@sha256:e636802c7561c9f3eec3bc27a24853e17afeb05de626e782afc18e733efa1153
rhacm2/submariner-route-agent-rhel8@sha256:45c12e4deb466d102bad5e9d95cc7aa8d1d678ca44062f22aa6b1d4fb5b70dca
rhacm2/volsync-mover-rclone-rhel8@sha256:cb78eb0b42d4e347630ce35e18f9bb350162ca3e924955f9ceedae364e460227
rhacm2/volsync-mover-restic-rhel8@sha256:4f628e6bdcb572b1f1d8ef18ef90dc410d51d48d6301da54e0e1e15e9a1e84c0
rhacm2/volsync-mover-rsync-rhel8@sha256:2790a2073fa94fcbc0c4909d13f965bc85e7ba34592a09c89d5d60090aa92f69
rhacm2/volsync-rhel8@sha256:8b8987c1cd4fc89e5fde3cad7eeb1b43b1839ff1dd73f3c392826fc5a4e3eb4f

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility