Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2024:2814 - Bug Fix Advisory
Issued:
2024-05-09
Updated:
2024-05-09

RHBA-2024:2814 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat OpenStack Platform 17.1 for RHEL 9 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat OpenStack Platform 17.1 for RHEL 9 container images are now available

Description

The Red Hat OpenStack Platform 17.1 for RHEL 9 container images have been updated to address the following security advisory: RHSA-2024:2631 (see References)

Users of Red Hat OpenStack Platform 17.1 for RHEL 9 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat OpenStack Platform 17.1 for RHEL 9 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenStack 17.1 for RHEL 9 x86_64

Fixes

  • BZ - 2258143 - CVE-2023-49569 go-git: Maliciously crafted Git server replies can lead to path traversal and RCE on go-git clients

CVEs

  • CVE-2021-35937
  • CVE-2021-35938
  • CVE-2021-35939
  • CVE-2023-3138
  • CVE-2023-5363
  • CVE-2023-6135
  • CVE-2023-7104
  • CVE-2023-27043
  • CVE-2023-28486
  • CVE-2023-28487
  • CVE-2023-42465
  • CVE-2023-46218
  • CVE-2023-48795
  • CVE-2023-49569
  • CVE-2023-51385
  • CVE-2024-0553
  • CVE-2024-0567
  • CVE-2024-1753
  • CVE-2024-25126
  • CVE-2024-25742
  • CVE-2024-25743
  • CVE-2024-26141
  • CVE-2024-26146

References

  • https://access.redhat.com/errata/RHSA-2024:2631
  • https://access.redhat.com/containers

x86_64

rhosp-rhel9/openstack-cinder-api@sha256:24fe411a1373415b463e8f79c6d686128da8127e151219d054fb0f43821b3fa4
rhosp-rhel9/openstack-cinder-backup@sha256:b3b594afc0a7d6705c6a1ec35de878650678412c310c0ecfdc046d4cd916855b
rhosp-rhel9/openstack-cinder-base@sha256:493535511a1f547098f5ce98efd0d439816a1783728e159142170db861a0374e
rhosp-rhel9/openstack-cinder-scheduler@sha256:b392205ddcaea55f2f37bead7ef8f47ef8ee68ecafbf2af98bba535d3c5d4d56
rhosp-rhel9/openstack-cinder-volume@sha256:9143228d6926ec1c4e92bd65e3649ef3df5aba93cb2ba7e7930313c763ff89d8
rhosp-rhel9/openstack-collectd@sha256:21a62344274c228bcac8e28a86f1ead82d562819ed0506fb1be449cce2643ebf
rhosp-rhel9/openstack-glance-api@sha256:44223cc2ca5adff2ca2bc25f8ce734cf5a74eb7c521fa279f40282525d40e586
rhosp-rhel9/openstack-gnocchi-api@sha256:da41324cc4d46b3334e00d1d5a48bcd52ba2f8fec01969d678888ed04384b626
rhosp-rhel9/openstack-gnocchi-base@sha256:688a58e02d3c029280ac6dadbef07ac621f1155a1d1cc8ac76cfb17e24f5d849
rhosp-rhel9/openstack-gnocchi-metricd@sha256:2b09713543d3d2c758526209d15e60936831c88aecb7f2b5da30f285e0ca9837
rhosp-rhel9/openstack-gnocchi-statsd@sha256:a6fa8cc4ed7694abb339e95fb6ab75c848576bf47f7598fbf884cb40e25a5170
rhosp-rhel9/openstack-manila-share@sha256:400cc729f61cbc545e396f1b36314471abb8acb138fa93844d93f793c91d8ef7
rhosp-rhel9/openstack-neutron-agent-base@sha256:cfc65c5c8a345c15135ebeb81bb45decbc308036861596dfc66256a360d96bbd
rhosp-rhel9/openstack-neutron-dhcp-agent@sha256:3ef5282e0f133221e7e497193eea8b3245b6c8e85378b412d19daba02938ea22
rhosp-rhel9/openstack-neutron-l3-agent@sha256:833de1ca812df9922ce0ba3096399933a8587b94846c8013d99ab675bb5c17eb
rhosp-rhel9/openstack-neutron-metadata-agent-ovn@sha256:c74e4f570c826e8fcfb65b78ac14489f8d6c9073f129b8664167985f0f64813e
rhosp-rhel9/openstack-nova-compute@sha256:550dad5b5d43edc49159de0a16a79ed1d54fa3542aa6c5081d0133ae60a71496
rhosp-rhel9/openstack-nova-compute-ironic@sha256:a35c5cd6e6c116442e99d81e75e64f2b8123967c1f64e074a582e603b9e1e99e
rhosp-rhel9/openstack-nova-libvirt@sha256:1c0f8555f8218d2abfca57f26385b6512776a236e313de329cbf65a398bda6c6
rhosp-rhel9/openstack-tripleoclient@sha256:0d16511ffa77814ccd5ca0b84c49c27328de8a426fde6c757ea7da367887dbe2

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat X (formerly Twitter)

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat, Inc.

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility