Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2024:10967 - Bug Fix Advisory
Issued:
2024-12-17
Updated:
2024-12-17

RHBA-2024:10967 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

Red Hat Quay v3.13.2 bug fix release

Type/Severity

Bug Fix Advisory

Topic

Red Hat Quay 3.13.2 is now available with bug fixes.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Quay 3.13.2

Solution

Before applying this update, make sure all previously released errata relevant to your system have been applied.

For details on how to apply this update, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Quay Enterprise 3 x86_64

Fixes

  • PROJQUAY-6474 - Conflict in replicas management between Quay Operator and unmanaged HPA
  • PROJQUAY-7601 - Pull-Through Caching UI
  • PROJQUAY-8273 - Quay 3.13 Operator should not reconcile to update minReplicas for Clair-APP and Mirror when HPA is set to unmanaged
  • PROJQUAY-8208 - Quay returns 501 on repo/org creation when auth type is OIDC and restricted users are set
  • PROJQUAY-8269 - auth: Remove robot references from scopes list

CVEs

  • CVE-2019-12900
  • CVE-2021-43618
  • CVE-2023-6004
  • CVE-2023-6918
  • CVE-2023-25193
  • CVE-2023-37920
  • CVE-2024-2398
  • CVE-2024-3596
  • CVE-2024-3651
  • CVE-2024-4032
  • CVE-2024-4453
  • CVE-2024-5535
  • CVE-2024-6232
  • CVE-2024-6345
  • CVE-2024-6602
  • CVE-2024-6923
  • CVE-2024-9287
  • CVE-2024-10041
  • CVE-2024-10963
  • CVE-2024-11168
  • CVE-2024-25062
  • CVE-2024-28182
  • CVE-2024-28834
  • CVE-2024-37891
  • CVE-2024-40897
  • CVE-2024-50602

References

(none)

ppc64le

quay/clair-rhel8@sha256:283acff8fa11043c8728621fd537e03145dd1d525372238504afba5450c2a676
quay/quay-bridge-operator-bundle@sha256:91716c4d898aa387d7228b6d0c3844065dd4fd2b30c3a657a30b4b38ca7c1909
quay/quay-bridge-operator-rhel8@sha256:21a4ca80f010ad667f6bf41b74ec0a0c0ab83dd1cfb0dad695c5d9e2907658f8
quay/quay-builder-qemu-rhcos-rhel8@sha256:688898286cc11ec2e2b8be498576df5137dc640910f7c611809f93f6466135a3
quay/quay-builder-rhel8@sha256:f0d382b21ff912cc8440da90f3121db140080e10ebc8d611fb7f400d7d9c580e
quay/quay-container-security-operator-bundle@sha256:d302e8f889b3672afd895566bbd4a064718028793451dce32122c7c5f33e608c
quay/quay-container-security-operator-rhel8@sha256:09487f3167985192e6b06f0798d2b507024eae284f31b29f4de3ae3e1b9ee806
quay/quay-operator-bundle@sha256:31153e5266a86cfdece72a3d3befc20a035165c10ffe3c6b4c5643be51d5fb45
quay/quay-operator-rhel8@sha256:65dbde25d5b7d44a10cc18e04d4824e711ecabb5e4bdfdff9460fd5598c5c81d
quay/quay-rhel8@sha256:49e5d64a34ffeef0333a06153c496bbb19c0c2ee4b386b1bb38976deb93d48d5

s390x

quay/clair-rhel8@sha256:a71bbc6a838397007aace636b2fa2112a0739121f4372d8494ad5c032a36bd46
quay/quay-bridge-operator-bundle@sha256:fbebe36d4a0f5a81832dfbd910ea9e73ec66e8864f89a50cff18f9af8e2b70ac
quay/quay-bridge-operator-rhel8@sha256:566cefe241071578d7159542c8a585dd46580711f5f72c7ac843a1627ae36f82
quay/quay-builder-qemu-rhcos-rhel8@sha256:3d91e8acc101f71b804c883daf072f1bc0b6c89e9c2b485c41e70a72c8aaeb7b
quay/quay-builder-rhel8@sha256:c8ba63fa1a07b65cc72efd498573164c236109116af9dec4b49eb17fd30ce84c
quay/quay-container-security-operator-bundle@sha256:7b21a13f92063b64adecfd3c6d86c6bcb72ccf399038ea323cb2fe70e2169d95
quay/quay-container-security-operator-rhel8@sha256:09bc7747228f7eb1b333db9db5ab9b975c8bbcac03256568de1ad204ef39ce3e
quay/quay-operator-bundle@sha256:ef3fba63b6cc2a8307e570d861381a6e4cf245f46304f25676f26bc0431d275f
quay/quay-operator-rhel8@sha256:1dc9cc75bfdc1c28a686ada922767fa5db52c100371ffdb48d3b00354fb3a676
quay/quay-rhel8@sha256:34fff0b22b444ff8c33d92a322ec2ac9ca9c083634ce6de94e893c01b2fa609f

x86_64

quay/clair-rhel8@sha256:6dd094a7988a11e7965297fc5866f25465438ecda5dfb08cc924b312e391a1bf
quay/quay-bridge-operator-bundle@sha256:2e007d0eeeac58b9256301a8c226ed3ec0cd5eee12cc7f09d9521b1cffac25b6
quay/quay-bridge-operator-rhel8@sha256:d91aef6df657c610c0de286e5a83f0a3c425661129e99c20c102977b27f180ef
quay/quay-builder-qemu-rhcos-rhel8@sha256:2bd2bf64a0b396b2603771afb659e4f30ba6de6e6b0f5c2263d26ee024ff4588
quay/quay-builder-rhel8@sha256:8190b5c673b7969953e356b4722c6aa43b0775bd1aec91908260f554cccc033b
quay/quay-container-security-operator-bundle@sha256:e5215c310e253ccf574c1cdd6cf019b7845efc471908f47f345468d3b1f31d8e
quay/quay-container-security-operator-rhel8@sha256:e97e24f255c291ff2260d56f571d4595917adc37a07337588c5b741bb5f76a51
quay/quay-operator-bundle@sha256:cee9e962edb9859a0ec06dbbd6f327e778625d2f0f84da4056a0ae7709ca01e8
quay/quay-operator-rhel8@sha256:615bb031102dc25944e1e1c536264154186a70c3335af402c8ff15315f391144
quay/quay-rhel8@sha256:9c548b01217ba19e7428457820ec372335e16f598162e12c93a37aa17bbf4113

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility