Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2023:6038 - Bug Fix Advisory
Issued:
2023-10-23
Updated:
2023-10-23

RHBA-2023:6038 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat OpenStack Platform 17.1 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat OpenStack Platform 17.1 container images are now available

Description

The Red Hat OpenStack Platform 17.1 container images have been updated to address the following security advisory: RHSA-2023:5969 (see References)

Users of Red Hat OpenStack Platform 17.1 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat OpenStack Platform 17.1 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenStack 17.1 for RHEL 9 x86_64

Fixes

  • BZ - 2228743 - CVE-2023-29409 golang: crypto/tls: slow verification of certificate chains containing large RSA keys
  • BZ - 2242803 - CVE-2023-44487 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)
  • BZ - 2243296 - CVE-2023-39325 golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487)

CVEs

  • CVE-2018-14041
  • CVE-2018-20676
  • CVE-2018-20677
  • CVE-2022-32081
  • CVE-2022-32082
  • CVE-2022-32084
  • CVE-2022-32089
  • CVE-2022-32091
  • CVE-2022-38791
  • CVE-2022-47015
  • CVE-2023-2602
  • CVE-2023-2603
  • CVE-2023-3341
  • CVE-2023-4527
  • CVE-2023-4806
  • CVE-2023-4813
  • CVE-2023-4911
  • CVE-2023-5157
  • CVE-2023-29409
  • CVE-2023-30630
  • CVE-2023-36664
  • CVE-2023-38545
  • CVE-2023-38546
  • CVE-2023-39325
  • CVE-2023-40217
  • CVE-2023-43040
  • CVE-2023-44487
  • CVE-2023-46159

References

  • https://access.redhat.com/errata/RHSA-2023:5969
  • https://access.redhat.com/containers

x86_64

rhosp-rhel9/openstack-aodh-api@sha256:ba29cae7ea8a7d879df67ef59667bf668d4b69f61a49c32e13bd7aadf3f1b1b9
rhosp-rhel9/openstack-aodh-base@sha256:5db08e4a00a793d3f727b49aded1e0d071685b29d6bacf91d39811d7c37f1b0d
rhosp-rhel9/openstack-aodh-evaluator@sha256:3a4a2dd9a6e989404ed03226a7e98c03e94ea577a83b63c3a3d19e165c2e5e95
rhosp-rhel9/openstack-aodh-listener@sha256:eff45906bd09cb7f82d589fa8a2131b334a39e8f1924228ebd99a7138a418535
rhosp-rhel9/openstack-aodh-notifier@sha256:45b735322f1a4e6a2fa0935904f5eedd781f4a2a215e885e6bb739cdac28e537
rhosp-rhel9/openstack-barbican-api@sha256:1addf2f58caeed60ccb37baf6cda2c9436d5ccd237e4bd60e4e79ea27a8fb6ff
rhosp-rhel9/openstack-barbican-base@sha256:1e6ca39c85911b342648026ae9d337868a9b6d609cf35c4e457cbcc43ca42697
rhosp-rhel9/openstack-barbican-keystone-listener@sha256:9727ca009410cea2b2d4ef0d871a781efed46ebdb78cc7fcb58da14c41b856c4
rhosp-rhel9/openstack-barbican-worker@sha256:c975d4c93ef52514748b6e584fb55ad8f8db9ddd573cbefa6189fe8b824a2ca2
rhosp-rhel9/openstack-base@sha256:5581c09d7b0569e174e90ba618f2b4fe874e5454ba34f1d78e0790ea31932308
rhosp-rhel9/openstack-ceilometer-base@sha256:4f2805c4fd9d43bc5b0232f9b8276ff70c11110ad37ea299f0dc361823e37d3e
rhosp-rhel9/openstack-ceilometer-central@sha256:263ba990d691120504e7874f6693c8b146f28ed66bb4eb02bd713752be75a4bc
rhosp-rhel9/openstack-ceilometer-compute@sha256:43d38704b998965c8d3dc613ec2c553f70ebb2d3c3edcad448c361fdcff5f22a
rhosp-rhel9/openstack-ceilometer-ipmi@sha256:107e97741fcafdb08b60fe01c6e0a5afbf57084b7922c2aee035fb0fa4545c9e
rhosp-rhel9/openstack-ceilometer-notification@sha256:59a83700adfbf0723c59cbc7d64111718afb1891b6706a5356643c106e520300
rhosp-rhel9/openstack-cinder-api@sha256:5ba18a72344eb1f9fc5e90f211336f35dc8b1541e5bd866346b6e31ddaf01753
rhosp-rhel9/openstack-cinder-backup@sha256:3d1bf2330a3d26733d7dc9a81d87678fc946adce4070124341969727fdd6b325
rhosp-rhel9/openstack-cinder-base@sha256:4246e1e71bda330620c2badc4a11cdcf9bf8655183203db991bbe3b441bd331a
rhosp-rhel9/openstack-cinder-scheduler@sha256:4d9106d18cd1da50dd383c0c5e53ae0d1a68e8455245fb9ff493a147a8e7b371
rhosp-rhel9/openstack-cinder-volume@sha256:088a433e262a68e05d9f122c7553101f547e1ceb8490d660e61dea1854c69149
rhosp-rhel9/openstack-collectd@sha256:449fff17787a31b5a87a371d3fb9f5f89f7f69f26b100c4508f39aa7e0d4850c
rhosp-rhel9/openstack-cron@sha256:78a4a3c639d2023a939e218d9810fdaebf6a50a2043a53ae0a94a42e428b3b31
rhosp-rhel9/openstack-dependencies@sha256:3757ac8f13ed52213732f804f0d6a98128e7e348579ab17eec7a240720bee641
rhosp-rhel9/openstack-designate-api@sha256:ff5ab9cde739c244133e6dbb75e6e549791f4638cc13b073295120fdd9c87188
rhosp-rhel9/openstack-designate-backend-bind9@sha256:c71852643662f9d1d556b7f03664fe39905e9600b29fb251cc749a77225fbeab
rhosp-rhel9/openstack-designate-base@sha256:2a4c2c4f2b9c95a52e320c8cf670249c3f136f02ccbb1fc0ba6707c39fffb96d
rhosp-rhel9/openstack-designate-central@sha256:81062efff3f26c9bdf3c79613cf0d36fd520f1797972d4de0811a01c44912c65
rhosp-rhel9/openstack-designate-mdns@sha256:2123fbb49356f7794f0dd0a09c7b5c008da2ed9cbd23078ad86f28439a61f177
rhosp-rhel9/openstack-designate-producer@sha256:f2954f457e42fcd8d20a917c0f66d32751bcb77461353588082bf4e4b941d161
rhosp-rhel9/openstack-designate-sink@sha256:17baff4ea92f20d4bb888442364ecdcf4bb2f34cebd5fc1df289f295be7700a2
rhosp-rhel9/openstack-designate-worker@sha256:e362eb379d0abe333124f5f4523dc23ab98e8f2406a21bb3e3dd50052f99aa08
rhosp-rhel9/openstack-etcd@sha256:0184959dd7650106e849bc7d4439ea4154d3b8caf10b5b988aab85a54979faf6
rhosp-rhel9/openstack-frr@sha256:3d0ce7ba39c89034ac60ba9dafe6c1e20866b39b2900881064230e8917132b71
rhosp-rhel9/openstack-glance-api@sha256:d4f8cd6edf754b8b430c9a28798e2e21d5ea8ee24853c1be74b598feaad12785
rhosp-rhel9/openstack-gnocchi-api@sha256:ab3698f5c8f677753471ee4343464b83a960e1fa357424e8959cfdac7fb6a52f
rhosp-rhel9/openstack-gnocchi-base@sha256:3a738ba15f403f2f0121fbf9f55f025bbccdf92276b02f1b2f494c020bbc738b
rhosp-rhel9/openstack-gnocchi-metricd@sha256:e4b235ba5d12cf142ab70a2d1a5b018401fa8f19c978ce68eb28b7757aa1e0dc
rhosp-rhel9/openstack-gnocchi-statsd@sha256:77cdf93a688f9e07015f695600c58d6f9f9f10b7b53e4e2cf7c9c3334e21e66e
rhosp-rhel9/openstack-haproxy@sha256:437defcc8d85e32ec6a6e6f9d2be6e0395971b8f179df0634f228ca7aa89dd34
rhosp-rhel9/openstack-heat-all@sha256:314a36b0d6a5034841a27621e98d91b5e89841471dcc2ccd974430f7a4c19691
rhosp-rhel9/openstack-heat-api@sha256:0545ced41ae54262ee5bf767a35980a812d6c7755921cd3196444bd789d9a5a8
rhosp-rhel9/openstack-heat-api-cfn@sha256:403a30530bc7f7881ba26b81e11aec69912a0193e54e00333ea497146c4a1f4f
rhosp-rhel9/openstack-heat-base@sha256:698f69a96e2647360ff3326ec1819e4776a96c2e53c13fcd526ebfd02fd4645b
rhosp-rhel9/openstack-heat-engine@sha256:c96d55a72edee4e6cd721d3898997412916b4407e3e1deb01ed41855d3b1e968
rhosp-rhel9/openstack-horizon@sha256:55b18983526e1af6dede88a2536eead26df4ca331b735d417c4a7756294d5877
rhosp-rhel9/openstack-ironic-api@sha256:65c563c35c0534402272656726c85bfbc91292aa84d46cac430b72d0251f062a
rhosp-rhel9/openstack-ironic-base@sha256:d85ec8b35ffb0d78b9babd4bead66f1e14c447cb019dfea574194d7675baa379
rhosp-rhel9/openstack-ironic-conductor@sha256:c9d046ddfb74daec0d656c31d7d39d729b37b90b11310bf01bf141ddca2fe592
rhosp-rhel9/openstack-ironic-inspector@sha256:9016da43073540f409dc91cb3662eac402ec78f4d0d6a20c56ec23004f641f5f
rhosp-rhel9/openstack-ironic-neutron-agent@sha256:d85e6297390edd2280e53d55e2a1b9a35abc727c73d7d7bac5a4b1f26fbc4e46
rhosp-rhel9/openstack-ironic-pxe@sha256:d3fd552dfcdfa3bb98677b8ed29fd46485ce0623572a81f45d4d59e19724e438
rhosp-rhel9/openstack-iscsid@sha256:c36d7ae16e806b7843fcbc69f05ed9173be16c4243ec9c390883d056dcd69f6b
rhosp-rhel9/openstack-keystone@sha256:a431ab1a4ca44870f731a0f70070fead697ab2f51718aee2cee99642629090b7
rhosp-rhel9/openstack-manila-api@sha256:9834961f4b1b57c45297b4970417ec0eaf572278fbf5f7479b446a56e0065a94
rhosp-rhel9/openstack-manila-base@sha256:d1c1e533aebc31d9dc3eac292e16246f072ff61738f86fdef2d270a3fd18a6a2
rhosp-rhel9/openstack-manila-scheduler@sha256:d22b4ee2f3e691a01761dd678dfd53017bb471308585f2473fc65dcba50d6088
rhosp-rhel9/openstack-manila-share@sha256:be13f0b1bc35cd969ccb9bb26e21bebcd0cd3f2dca3d397a192dc0247c8841f6
rhosp-rhel9/openstack-mariadb@sha256:6f16709da642efbc13d4505509e1581b403b4a20947d291ea1d0c31507a0e724
rhosp-rhel9/openstack-memcached@sha256:714c1d0e3fed22b85ee5d6ebd999089efb545c57b71671adf791a3840dfe6faa
rhosp-rhel9/openstack-multipathd@sha256:4c7da1eaf1c06a1b8092af4dfd50cb7519b17f20b4d9b66b7aeae41900c0a015
rhosp-rhel9/openstack-neutron-agent-base@sha256:d1d68d09aab88d5dd7463bace27b1e6fd45f2035eaf024aafd9443004ed4a129
rhosp-rhel9/openstack-neutron-base@sha256:d441ae717e185805a429199378d65d1d7320d30b65bde39ef425b45d76b50c93
rhosp-rhel9/openstack-neutron-dhcp-agent@sha256:4e48ed7e58e4ad620ee346efbeb1079c5b71a59718aa35108aea10594f5b8984
rhosp-rhel9/openstack-neutron-l3-agent@sha256:6719eff980873dc84790cfed08fef6fecbf6ce03f041d61e6033b68722d89b85
rhosp-rhel9/openstack-neutron-metadata-agent@sha256:f8d4a7706ef9985265281a9468991335ed0f7f696511c51f894a078f3ad0941e
rhosp-rhel9/openstack-neutron-metadata-agent-ovn@sha256:05ff63d75cd2242bfbb2c97da977202921a888833f54770155b8f4f50708d9cf
rhosp-rhel9/openstack-neutron-openvswitch-agent@sha256:d514f90b62157991c230bc4b6c04323cf3ff7bad1b8884b084c01c4d0c49b543
rhosp-rhel9/openstack-neutron-server@sha256:ff0cab3521c2ee3e172d43237b1e2171b226e2a1de65020e1dbb35331e98808b
rhosp-rhel9/openstack-neutron-sriov-agent@sha256:4da1bb32e943db4f7a6581079121dc01e32593e5abfda7e551e918af66260327
rhosp-rhel9/openstack-nova-api@sha256:9c76a4a52c6b1e59412e5225e0351a90956e1717d9135bc5c70fbdc950249e86
rhosp-rhel9/openstack-nova-base@sha256:a71ede7d02c6bed22283c22c9df15d941d51dfbacc2dfa22aecaac9579fd778d
rhosp-rhel9/openstack-nova-compute@sha256:69efc24d9c956e2ac7657a96ed2bb0e50ccf4040edfb488cec883118483009e6
rhosp-rhel9/openstack-nova-compute-ironic@sha256:46c5afa0dd02fac9122323a8a3b5d42350dd22b5d8c807671d49e54fba340762
rhosp-rhel9/openstack-nova-conductor@sha256:cfc67e7e0b0864dcd6fc240dd134c4c39e2c5147c8e5ca8feeb7db3af70044c3
rhosp-rhel9/openstack-nova-libvirt@sha256:64d51d6cf1c764124a1bbc4fc61ea0760b2b2901b1df5c7f73e29edcff2ab377
rhosp-rhel9/openstack-nova-novncproxy@sha256:4eda3fe4946d0eb19df95fc5a49f9af45710f7f1176677dbb0c3fc80ac654860
rhosp-rhel9/openstack-nova-scheduler@sha256:1cd80fcd2bca59575b9ea9cca209e881461a6ba43eade875ded1bd0faf572096
rhosp-rhel9/openstack-novajoin-base@sha256:083e8b6e041a0a2076180c5448a69b1417b1c1ee37e20a51187b1decc7bbc9a1
rhosp-rhel9/openstack-novajoin-notifier@sha256:f7830351b5dfdd523902dcc6e6a3618d97f73bb2281fb3ac7d760c6f10c30c8b
rhosp-rhel9/openstack-novajoin-server@sha256:f399704d6d4c6fc669c18682d6441b0a4af6a283f0d99271c152cf4d83e3e922
rhosp-rhel9/openstack-octavia-api@sha256:0be0f84a343d5b514ab003af77a43ba681bc554cb22374b356641c9c0c1dcb9c
rhosp-rhel9/openstack-octavia-base@sha256:dd733bfa3f7654077f8ee1c1bb06cb91b160e4b308b32037a2cd8dc5d765e319
rhosp-rhel9/openstack-octavia-health-manager@sha256:895ad80b4d9f53e5ece2b32356ea2dbd74eaa5b27f13400af7473bdee535263c
rhosp-rhel9/openstack-octavia-housekeeping@sha256:d6874324ff926db2950c390d5f3375155aacac1fa2ab4a4d299c2d9d1967043e
rhosp-rhel9/openstack-octavia-worker@sha256:38d04a8ea7a668b1d83b94a40741b8b0d26a7797e78b9afaf1f9a71fa5be3c04
rhosp-rhel9/openstack-ovn-base@sha256:1a428a6227de0ecaecb4c697879864c8544e7a026681f894ff7f696853633b8a
rhosp-rhel9/openstack-ovn-bgp-agent@sha256:b16fb782ebc664f57c786686d6f691ca08d90d6d4e233c4eb262e3a5f4a84b6b
rhosp-rhel9/openstack-ovn-controller@sha256:9865824f48670c60ed67eee97f1d788c987f528a706de8b0ec80690b43c225c2
rhosp-rhel9/openstack-ovn-nb-db-server@sha256:faf82c50fd6d4c2085ecbf35adf2a5554bd09aeb68c05d0e6f24e031a400a3f4
rhosp-rhel9/openstack-ovn-northd@sha256:9c25a994efea1dfbafdbca9e1601240afcffdee97e2ad4daadc4fa73d5bf6610
rhosp-rhel9/openstack-ovn-sb-db-server@sha256:a1f3383e14885de127e6ec8f618cf85e04eb58de13e1cd4049e85acbcb4afb4b
rhosp-rhel9/openstack-placement-api@sha256:c79719eef8056bcae96adc1cdf6b164801dbd8461ac425b967f33f807361e6d2
rhosp-rhel9/openstack-qdrouterd@sha256:bf453987b1c55d1e99c693b09c37e44befc2e7695bad527e62e746de938bcc5e
rhosp-rhel9/openstack-rabbitmq@sha256:a5de8c2e67759f7b22a72cc5850c814ea8abd7c1486c2dcd38572849f8ce0e1f
rhosp-rhel9/openstack-redis@sha256:6d2b6fdd18a32d5167fa19b653e19f6904c60fa9724a7e0458aa3d6203183c8f
rhosp-rhel9/openstack-rsyslog@sha256:bd06e84eeba0513c58d84f70efffd024f4d33150836b22fd981f00d64e7fb1c4
rhosp-rhel9/openstack-swift-account@sha256:e2c59050362b506f734b1661b32c082a11bbe1422e5dae94654ce7ea2a9816f9
rhosp-rhel9/openstack-swift-base@sha256:08beac47420f607ea2a07170d598dbf921bb8f1165f786ba5d7869e5db6f9650
rhosp-rhel9/openstack-swift-container@sha256:2af81b7f6517248b54cf8af1d9a3cc39492455acd824d18ab3b8f8d3a6b48716
rhosp-rhel9/openstack-swift-object@sha256:74815af88dc89923b8e01b6b35632d282a31e8825bfbfdf5088224170ada0621
rhosp-rhel9/openstack-swift-proxy-server@sha256:188f7c49852390c670419dec913965e4750f2e40c24aea05f7a81873a8eba375
rhosp-rhel9/openstack-tempest@sha256:b1f605b9ac0d4e0ea7a6bfb75a72fba31060a8fa763f5d29ec9f8c0fe1cf3817
rhosp-rhel9/openstack-tripleoclient@sha256:c2c7d66fadac3ccba1a6f909a9e2a5757080fe47b290dd0cd19aa4eda20428dc
rhosp-rhel9/openstack-unbound@sha256:f13a1c984a206516e1cf59261ba502700eb77de43eebdece4dd60c9f9819d6ab

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility