Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2023:7221 - Bug Fix Advisory
Issued:
2023-11-15
Updated:
2023-11-15

RHBA-2023:7221 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat Software Collections for Red Hat Enterprise Linux 7 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat Software Collections for Red Hat Enterprise Linux 7 container images are now available

Description

The Red Hat Software Collections for Red Hat Enterprise Linux 7 container images have been updated to address the following security advisory: RHSA-2023:6885 (see References)

Users of Red Hat Software Collections for Red Hat Enterprise Linux 7 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat Software Collections for Red Hat Enterprise Linux 7 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat Software Collections (for RHEL Server) 1 for RHEL 7 x86_64
  • Red Hat Software Collections (for RHEL Server for System Z) 1 for RHEL 7 s390x
  • Red Hat Software Collections (for RHEL Server for IBM Power LE) 1 for RHEL 7 ppc64le

Fixes

  • BZ - 2235789 - CVE-2023-40217 python: TLS handshake bypass

CVEs

  • CVE-2023-40217

References

  • https://access.redhat.com/errata/RHSA-2023:6885
  • https://access.redhat.com/containers

ppc64le

rhscl/httpd-24-rhel7@sha256:bf859d9994d9488aba74ec483ef01d9ed3628b28817cd0bd77c2fc61424a61b6
rhscl/mariadb-105-rhel7@sha256:be4ecb23a7f48b7fc3b9cc49b07d2e06afaafc3d27e5993d572a3a42367bcf0f
rhscl/mysql-80-rhel7@sha256:784b23ffa2e09300468dc8b038d17e6709ab428ab2274d6709ed800f7ed97617
ubi7/nginx-120@sha256:3126e20b2b8d13d29718cbcca85beeda6aa07588df265ca7e317cd8946ed2f80
rhscl/nginx-120-rhel7@sha256:3126e20b2b8d13d29718cbcca85beeda6aa07588df265ca7e317cd8946ed2f80
rhscl/nodejs-14-rhel7@sha256:a4cf70e5a6c1394e2aff3ddfeca2ce3c6a1fa86a5bb865164a038b33cbf33650
ubi7/nodejs-14@sha256:a4cf70e5a6c1394e2aff3ddfeca2ce3c6a1fa86a5bb865164a038b33cbf33650
rhscl/perl-530-rhel7@sha256:ac4673924c1a8a585919780d566cfed1cf038ff722f9867fa39e608bf23b4d7b
ubi7/php-73@sha256:ef3b2046a1e49d35dd92d6457c16a96b6ed06139fdca147c021fffcf13f94ce7
rhscl/php-73-rhel7@sha256:ef3b2046a1e49d35dd92d6457c16a96b6ed06139fdca147c021fffcf13f94ce7
rhscl/postgresql-10-rhel7@sha256:2ff3c2b0019b6a7457beafa5a5a615453d4577ca8ff1eb41d7dd56b7c561ca13
rhscl/postgresql-12-rhel7@sha256:45cdfe1e3141003c37c141cda078cc5428e89b2fd4d866e5160646df558d68c9
rhscl/postgresql-13-rhel7@sha256:cad0124443a02a1be2cc97a5453c7aa7653836d8293f915f9a90aa9c19733255
ubi7/python-38@sha256:b61e0fa5a79dbc7907ea0a23d4a8a8a17a8e788aa16c6add9fefdd6fcd9475ef
rhscl/python-38-rhel7@sha256:b61e0fa5a79dbc7907ea0a23d4a8a8a17a8e788aa16c6add9fefdd6fcd9475ef
rhscl/redis-6-rhel7@sha256:4819fedece2ef233c8f279288aca41e60b458610f97744de8a4bd696f8ee44c9
ubi7/ruby-30@sha256:5139ea03de15ca94c849538aa4e254fabb1888dd8ae0ae582e1f97dae8d41226
rhscl/ruby-30-rhel7@sha256:5139ea03de15ca94c849538aa4e254fabb1888dd8ae0ae582e1f97dae8d41226
rhscl/s2i-base-rhel7@sha256:6020e8733d5eb0c79b135c7df3fee1f9d30c03addbbd647f96f0094de49a4d82
ubi7/s2i-base@sha256:6020e8733d5eb0c79b135c7df3fee1f9d30c03addbbd647f96f0094de49a4d82
ubi7/s2i-core@sha256:50226fe9632c9214f9052e45d2116f9993367932c1fd55c56089c19ccc1e11cd
rhscl/s2i-core-rhel7@sha256:50226fe9632c9214f9052e45d2116f9993367932c1fd55c56089c19ccc1e11cd
rhscl/varnish-6-rhel7@sha256:3a72dccdcba2edc6fe502dbc56b762f2528c83025ade9d0ae62edda6cbe3ab43

s390x

rhscl/httpd-24-rhel7@sha256:92d4014b9f01d62aa55791cea5bc9aaee7fd5060b4d0a13fa46c326c3d6a5610
rhscl/mariadb-105-rhel7@sha256:94da3190aeaef7a949aeef3a8f033422bdd9839d8572b2a73ccfa851d170948c
rhscl/mysql-80-rhel7@sha256:a8d1b23bb7ae3e7332b3a9c3ec4e4d53af19fc139b97e21522d78f2837e10e76
ubi7/nginx-120@sha256:0a14e82ea8380c25d6f56cee1920bba67ab2402e57c720f3edc05dcb1aca7392
rhscl/nginx-120-rhel7@sha256:0a14e82ea8380c25d6f56cee1920bba67ab2402e57c720f3edc05dcb1aca7392
rhscl/nodejs-14-rhel7@sha256:6e82ec7e3009ab34389f7690730104fbb1f8db2e70f59e3ec20f8e9c80f1468d
ubi7/nodejs-14@sha256:6e82ec7e3009ab34389f7690730104fbb1f8db2e70f59e3ec20f8e9c80f1468d
rhscl/perl-530-rhel7@sha256:54899b4114e675538049d15e03f5799440a053eaa10aa39f680ed7d233ff6688
ubi7/php-73@sha256:4a8cf1ded624b67bfc208305c6d29bdfee2252421a9826907101d203951f163d
rhscl/php-73-rhel7@sha256:4a8cf1ded624b67bfc208305c6d29bdfee2252421a9826907101d203951f163d
rhscl/postgresql-10-rhel7@sha256:bb6f8bfb7ed3398a71d85af9a5196756f479939363e3a72680f697b126544bef
rhscl/postgresql-12-rhel7@sha256:b531ca8e9d26ec887d8444b633af430b0502bdea2c10a312438b2eb85d36b43d
rhscl/postgresql-13-rhel7@sha256:cbc43003e93b758d0bffd455677e0f680d6fa3af27e742243c47621b173f7ad5
ubi7/python-38@sha256:4545fc8a96650accda64d068aa6afc260848f20717896bada301a6c4432e5b0f
rhscl/python-38-rhel7@sha256:4545fc8a96650accda64d068aa6afc260848f20717896bada301a6c4432e5b0f
rhscl/redis-6-rhel7@sha256:27ba4a01b57b6e9c8be727776bcfba1db872e7a9cad701be827b396dc0cb7f98
ubi7/ruby-30@sha256:0fb9aecaed8ea1c9ba87a58034f2d3d9db5400838d91105fec2af524325369b7
rhscl/ruby-30-rhel7@sha256:0fb9aecaed8ea1c9ba87a58034f2d3d9db5400838d91105fec2af524325369b7
rhscl/s2i-base-rhel7@sha256:beaa312fb8d44b4c217dac53eb65db316e1e60c3cbed95bd49133cd8d39a02d0
ubi7/s2i-base@sha256:beaa312fb8d44b4c217dac53eb65db316e1e60c3cbed95bd49133cd8d39a02d0
ubi7/s2i-core@sha256:effac7cb14b258775c5af32eb1f39d5ee6e1eeab13f45d0968e5fb6416f0facb
rhscl/s2i-core-rhel7@sha256:effac7cb14b258775c5af32eb1f39d5ee6e1eeab13f45d0968e5fb6416f0facb
rhscl/varnish-6-rhel7@sha256:2b43fbc3e09386f3aa5caf891bfc1838f3bafed4ccc3676b6d0c2b75fee13c20

x86_64

rhscl/httpd-24-rhel7@sha256:07c45b8bef6fb7bd8f9008b47d3e6c86657ac661d279b35026b7867349c577c0
rhscl/mariadb-105-rhel7@sha256:bf165223eac9ee68669541833684547df35156767c8f127a2fdaa7083f61ec48
rhscl/mysql-80-rhel7@sha256:0bd6b847c56fbc7e7469ac3c6d5e0acde6e3e8fd6aac6b8a4421c99268bf2df3
ubi7/nginx-120@sha256:e505f83f15b513b9436b71e588bf08036770f11f72ba39e9b8895626c77acfa4
rhscl/nginx-120-rhel7@sha256:e505f83f15b513b9436b71e588bf08036770f11f72ba39e9b8895626c77acfa4
rhscl/nodejs-14-rhel7@sha256:86fb7e040af517dbfc47ad099b867235d8c14fd55a46d0fa152003bf11a82803
ubi7/nodejs-14@sha256:86fb7e040af517dbfc47ad099b867235d8c14fd55a46d0fa152003bf11a82803
rhscl/perl-530-rhel7@sha256:86f17b5c29a1c93623faefeaba2d13cba1ad90407a371fd2f0fbc7e238ba8b02
ubi7/php-73@sha256:3f63eca7b14325763b28e35944235ecd3b34ad889c35357aa0ca2dd140387026
rhscl/php-73-rhel7@sha256:3f63eca7b14325763b28e35944235ecd3b34ad889c35357aa0ca2dd140387026
rhscl/postgresql-10-rhel7@sha256:3ce57b06f3ec4b10af7713cd6087e0aec54f0013df8eb43f6f6e84c2e7373c47
rhscl/postgresql-12-rhel7@sha256:493e0b9343e216404c55bbab0a028f41372f6c4161c6240aebf85012afef61a1
rhscl/postgresql-13-rhel7@sha256:6170c3563a13f3e9ee16596ddf2377413a4e5d61f568daa1b998c6bd7743a0b1
ubi7/python-38@sha256:77abd020685b2293110660f16e5c6b3cb64f5c66c47ea6d7145c5d39cc0aa285
rhscl/python-38-rhel7@sha256:77abd020685b2293110660f16e5c6b3cb64f5c66c47ea6d7145c5d39cc0aa285
rhscl/redis-6-rhel7@sha256:6a1f5ad80e7942505ac5b7af103d77e04195212a3a7ab17da215069c57ee473c
ubi7/ruby-30@sha256:c4f604f6df64cdf37268c1a8ae7520175ccecf66c17a16617c91c0362a7c44a3
rhscl/ruby-30-rhel7@sha256:c4f604f6df64cdf37268c1a8ae7520175ccecf66c17a16617c91c0362a7c44a3
rhscl/s2i-base-rhel7@sha256:6a9df7942725fc12ff6cb70005f198a6d1944b838f21fb79ea9456fe8d32ff73
ubi7/s2i-base@sha256:6a9df7942725fc12ff6cb70005f198a6d1944b838f21fb79ea9456fe8d32ff73
ubi7/s2i-core@sha256:aebb0c6d059c901f99aa20d36708676e238376bb68bd46c0975850d3c036ed02
rhscl/s2i-core-rhel7@sha256:aebb0c6d059c901f99aa20d36708676e238376bb68bd46c0975850d3c036ed02
rhscl/varnish-6-rhel7@sha256:86e21cf5a75bc26c42cc24120f8ef9126f64c97ac4e9af0756062a2416c35a25

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility