Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2024:4217 - Bug Fix Advisory
Issued:
2024-07-02
Updated:
2024-07-02

RHBA-2024:4217 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

Red Hat OpenShift Data Foundation 4.14.9 Bug Fix Update

Type/Severity

Bug Fix Advisory

Topic

Updated images that fix several bugs are now available for Red Hat OpenShift Data Foundation 4.14.9 on Red Hat Enterprise Linux 9 from Red Hat Container Registry.

Description

Red Hat OpenShift Data Foundation is software-defined storage integrated with and optimized for the Red Hat OpenShift Data Foundation. Red Hat OpenShift Data Foundation is a highly scalable, production-grade persistent storage for stateful applications running in the Red Hat OpenShift Container Platform. In addition to persistent storage, Red Hat OpenShift Data Foundation provisions a multi-cloud data management service with an S3-compatible API.

Bug fixes:

  • Previously, the security scanners or checkers reported that the `csi-addons-controller-manager` pod does not have "readOnlyRootFilesystem" option enabled as the pod does not have this option enabled explicitly. With this fix, in the deployment of the `csi-addons-controller-manager` pod, "readOnlyRootFilesystem" is set to `true`. As a result, the security scanners or checkers no longer report the missing "readOnlyRootFilesystem" option for csi-addons-controller-manager. (BZ#2274499)

All users of Red Hat OpenShift Data Foundation are advised to upgrade to these updated images, which provide these bug fixes.

Solution

Before applying this update, make sure all previously released errata relevant to your system have been applied.

For details on how to apply this update, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat OpenShift Data Foundation 4 for RHEL 9 x86_64
  • Red Hat OpenShift Data Foundation for IBM Power, little endian 4 for RHEL 9 ppc64le
  • Red Hat OpenShift Data Foundation for IBM Z and LinuxONE 4 for RHEL 9 s390x
  • Red Hat OpenShift Data Foundation for RHEL 9 ARM 4 aarch64

Fixes

  • BZ - 2274099 - change odf CSV pods to read only root file system
  • BZ - 2274101 - change ocs CSV pods to read only root file system
  • BZ - 2274499 - Not all csi-addons containers run with read-only filesystem
  • BZ - 2291461 - [Critical] Upgrade ceph version to RHCEPH-6.1z6 at ODF-4.14.9

CVEs

  • CVE-2024-3651
  • CVE-2024-28182
  • CVE-2024-32487

References

(none)

aarch64

odf4/mcg-cli-rhel9@sha256:b5705d847056b8c7e9a3521253fdcbb0fd8866ed5f77c898d991898b4971e735
odf4/mcg-core-rhel9@sha256:357dff4a4d2c87d1de27b6e8e0cbcd08bf8426da7ffd7ddde9ea4b6f15886111
odf4/mcg-rhel9-operator@sha256:09b6a2c5336d4c5f7155eb3647759aa5733256ac211e71d796bc0564abb2fc74
odf4/ocs-client-rhel9-operator@sha256:a2994383bf3837445f6956a1a5ac15dd33c48366dd4f6c5d8252889c0373b961
odf4/ocs-rhel9-operator@sha256:721ff9c50425b113116b863a3a1580172b82a29c27d485d7b19555d493052709
odf4/odf-csi-addons-rhel9-operator@sha256:36ff5035c010f3ef4f28c142b4d95d7be640ff792b3fdaeb56da92526b4cf9e2
odf4/odf-csi-addons-sidecar-rhel9@sha256:f61c4fa8897c87c86d4171cd28f8e9fe60d5045e8ec46720e80cd6712d3a7a74
odf4/odf-multicluster-rhel9-operator@sha256:9ce3a458c80e97e0cadba5efcc2e95fb6de1c6fbb6ffa815d91195a6b415797d
odf4/odf-must-gather-rhel9@sha256:a105bb74ed6ef7dc6843b8a5d46713c6cb7ebe8b367833b185ef4680ee795e10
odf4/odf-rhel9-operator@sha256:895d0001b5f8cee76289a3adc97ef82e87effbefd650058cea2c25fc354603a4
odf4/odr-rhel9-operator@sha256:c230b8a01af40175b90917f2d643a8631701debe8c4743150c3d8fe1acbbf660

ppc64le

odf4/cephcsi-rhel9@sha256:bed0f613a0162815bd01fbc7e9aca9ef939ff531f5f064f97d112968c70bd221
odf4/mcg-cli-rhel9@sha256:b700a74de08e235b02bfd47fbb6aee1834824f7903766b4c4fdb6693c460b543
odf4/mcg-core-rhel9@sha256:06554b5b9073dfc896eb9f2af834c43a0777a8a81ef595e06e0494606f153180
odf4/mcg-operator-bundle@sha256:829f97e212e646efe9063dd6d9b2967baefb6ba7d85cf764c8868e3eab34c207
odf4/mcg-rhel9-operator@sha256:be398bbf7b1ed33157c72a23cb2604f4520e1e233c471933a70191ff5f9c4900
odf4/ocs-client-console-rhel9@sha256:b4597e4c185bc4a03e3784ac03cc830f2f7d0902f6c5c6a754181a77338901f9
odf4/ocs-client-operator-bundle@sha256:38bbb76a87b14400f9e5fe686dee330d7ff5d0197bfc41f0440df25f416b9fa5
odf4/ocs-client-rhel9-operator@sha256:be4c61ce8f5d5ef33b44ae6403b31d3c79ced66a84603da715ece71812c55521
odf4/ocs-metrics-exporter-rhel9@sha256:7871e47ce68726eda0406329ac357889dd60ad8b1b581df32bedcf5e34bea532
odf4/ocs-operator-bundle@sha256:3c67ef2faed83e94192768461d5df1638cf962ce06c7cced7ff5162831692acf
odf4/ocs-rhel9-operator@sha256:a4a03f6b4d7e8629f877387f2f111ba7a3313de4232d2e8880c049c95105de53
odf4/odf-console-rhel9@sha256:3809ece704eef5169e68b7d876a3336c45fa897bf28c107d776809ac9b013e22
odf4/odf-cosi-sidecar-rhel9@sha256:9c336e796660099650966f7561512ea1c22ab02cc7661afcdde24428b0731864
odf4/odf-csi-addons-operator-bundle@sha256:2357bd73641820fd7c7f05d2d368cbc7574f1c920173503b353c605edd236125
odf4/odf-csi-addons-rhel9-operator@sha256:41de81d85a9757f3a776ac1d06140d410543221f53de8da6ae816197c0f4aa32
odf4/odf-csi-addons-sidecar-rhel9@sha256:c38de129f84750a523f080ae4bb2f1c2107aba9b5ba310e8e43f481089b5df86
odf4/odf-multicluster-console-rhel9@sha256:0f38cf7e5ce2734e9dc5ef71cfb3f5aa7cc6607e48b2dfef90151c1bc8f05ab5
odf4/odf-multicluster-operator-bundle@sha256:e8493245adc1a76a4ee833e69dbfe09c860e3c4a8f9fb5702fbfa0da40375384
odf4/odf-multicluster-rhel9-operator@sha256:88e4048a15e4c0bc918434ac322b5701c1db3abe701afde8e8b5be38746b22e7
odf4/odf-must-gather-rhel9@sha256:8fa9de077bcfedcfa00c339954662a7124970e36abbb8f3e72fade760e08465b
odf4/odf-operator-bundle@sha256:de79283e9b89356f4dedd99fd911ee3acc5bd12c9bf18934501975011016332c
odf4/odf-rhel9-operator@sha256:7c6bf6cdf1c18318e799acf59c7b296995b904e9d71e782c3f9c68f566d00473
odf4/odr-cluster-operator-bundle@sha256:6d579bcc359e9f4f5e5ae019bb6bcd5e7535c2beef6d4f8ad2b041014f36a80d
odf4/odr-hub-operator-bundle@sha256:b82082b3ee3f2a4dfc1ede34f2693402eacedf0837571bd718cf5cf7e867012d
odf4/odr-rhel9-operator@sha256:94870a70c3d0b41a57fb17fee1059fe06c1fc24073fce6e2476f47e22d47bdea
odf4/rook-ceph-rhel9-operator@sha256:75c525e42e47c2241d6a82aba7e8c48e5411c1a0189c5b5990251fd140ef265f

s390x

odf4/cephcsi-rhel9@sha256:b5f071aefdead8d0e7beeb0367a778324c51c339eaa703f9987c69e81b62edfa
odf4/mcg-cli-rhel9@sha256:fcedce322c3b584c9398e8b4e979b0f7789b4e2c37b6d35fcae42dd903284062
odf4/mcg-core-rhel9@sha256:73b52bbbf75b1b6851f2c01d34a98017ff9f916503b12673196deab54307bb62
odf4/mcg-operator-bundle@sha256:190967d9a54b81907088164e9617ddf4d1a42b00974d6f01ba7435779cee826f
odf4/mcg-rhel9-operator@sha256:388063362d59a90fb8071f77c44fea37953c5ca85f0188ac1deb22b24566c313
odf4/ocs-client-console-rhel9@sha256:67865ee8bbf191be3428ad8dde33276929027c8ae3093c5cf81bbfa5914e5bcc
odf4/ocs-client-operator-bundle@sha256:9b1a3674d34ec72e5aa1c8f0862067feb40089b5054a366af64edf08f52b26b6
odf4/ocs-client-rhel9-operator@sha256:bd45c67acd15edebd0c8a3dcbb8f4eef5be5241d8086bd7b6d5e7670e4d1045e
odf4/ocs-metrics-exporter-rhel9@sha256:57a2c6b578767c87eb87d7bcbf844f8519845d27a3342c234ad1276d196b3ec0
odf4/ocs-operator-bundle@sha256:b71df4e7f8ef5c429fb821ff4d483b2a274ab10af53acef8d8da7fe015492d48
odf4/ocs-rhel9-operator@sha256:895f0bc5ac39d9f1d873aa7d56cfede224d085c48d26edff8f7753c0bbb837fc
odf4/odf-console-rhel9@sha256:54a28226aa9b01d821f4f7d8c7ea79995ffde4ba5a4e424c314e881c62c88398
odf4/odf-cosi-sidecar-rhel9@sha256:d76c2a0c4664cef3930008c085823d95c07060688245e914387aa0763db7fd30
odf4/odf-csi-addons-operator-bundle@sha256:1a39f19614a78720bce8fdda5e05f6855a06999ed3be2cdc0c134566251d2360
odf4/odf-csi-addons-rhel9-operator@sha256:e8b269915f3be9d49248798c0bfc8e35a144867c70e01e5b200074a6700057f3
odf4/odf-csi-addons-sidecar-rhel9@sha256:c0bf1fd0e05f4fd17f12110f795c8f6f4f94fd9a650d79d46af946fb495a340e
odf4/odf-multicluster-console-rhel9@sha256:3ce6324b648b4ee1fab6de9a96bf751487eebde044799ea26789b529040e1c14
odf4/odf-multicluster-operator-bundle@sha256:c9f2162704bbb123193dfe6d80081edba3186289d7948deb492a6969c0d4e6d5
odf4/odf-multicluster-rhel9-operator@sha256:640c6c374aa085ee3fc121fca5ead700514bdb448665858f98aed7c298214ab4
odf4/odf-must-gather-rhel9@sha256:8f7289cdac6885e390717b9b324f811c6c451ec5ff595880291ab383c16c8547
odf4/odf-operator-bundle@sha256:ef95644df8c585db8eee5a135db9e66d21e204c351a980bdc963d01b399217ce
odf4/odf-rhel9-operator@sha256:6208449d5f231146b59dbb326fab22acd82eeee814910a72251fd318bce7a874
odf4/odr-cluster-operator-bundle@sha256:8a53047f3d3d1860bc3569f3c7cf13f90a7506ac550c8265af47c3c7f6418a25
odf4/odr-hub-operator-bundle@sha256:9ea6f8d14db62716583b73f2406b4b7299b01965d67f94226936a51001b797c1
odf4/odr-rhel9-operator@sha256:97f3906d9ccce5c6f0dfca3442dc2334f92c55a14d53b69743755cff5e1bace4
odf4/rook-ceph-rhel9-operator@sha256:b7bdc68a5689bee8d470e50429407a141b7eeafde2a333ab20c5953649a6d45c

x86_64

odf4/cephcsi-rhel9@sha256:988af82bed68880619c7811bcee791b3d4c7da2d05efc2da57080e254a56c04f
odf4/mcg-cli-rhel9@sha256:b4656e3778b82d7498e2db015bcc6ebecdbeaee87cb5bfee565aed893af0479f
odf4/mcg-core-rhel9@sha256:f37c15e62077f8b7bb62c1b2fff6e329a77bf744a572e132f9f40d7dac6f1f12
odf4/mcg-operator-bundle@sha256:25af97e403fe4787d3b7ef63e9118563c7e7657279b9bac91291d17a3a986c32
odf4/mcg-rhel9-operator@sha256:e63a8712918a16ac16675f0b2bb93b9dd3848ce3a3ccf3b6bc899fa0a0a487a3
odf4/ocs-client-console-rhel9@sha256:552833d5e114504618a35c25bcb4902f0a5f16c88d99cbf376be7343a5a67faa
odf4/ocs-client-operator-bundle@sha256:fc07025a2a7e8d7509fac86f80e3a9628b4b514def9f166af486616afd6f38a7
odf4/ocs-client-rhel9-operator@sha256:f001293475f597fea523233cbd1534f4ba358844d59b687ff5b803b44c015090
odf4/ocs-metrics-exporter-rhel9@sha256:10a3fecba62808fdc43580c4e22e0907eaf4cef72cc07eba5399a566475cc936
odf4/ocs-operator-bundle@sha256:5d84bf6366f01baf133b5e0a8758d0ecd3403df39b844b4cae84ce71c594e63a
odf4/ocs-rhel9-operator@sha256:69a7bc4e5c408c2e528bcdc314067393c1f40aceda59ed8c71cca00d26c277af
odf4/odf-console-rhel9@sha256:8019f0b85e3945ee0c705a7a7b67cb9254419dc83e690088d572ec882206903b
odf4/odf-cosi-sidecar-rhel9@sha256:5a72e54fdc9419579737cdf2415eb8198213bfe0f66c862b630e101772cd5aff
odf4/odf-csi-addons-operator-bundle@sha256:36e77ad0d6dc0aad41963d5773595c59eba816f47273675e947437032a116c3e
odf4/odf-csi-addons-rhel9-operator@sha256:27d7a2c9a7c03ad456423b4f143354300ab18f9e6b423595f02acc3f6dadaa8e
odf4/odf-csi-addons-sidecar-rhel9@sha256:75673d23d6c8a87df41fdb621ac3a5444ab2f3fec042bae0b4d11f7f987a4e89
odf4/odf-multicluster-console-rhel9@sha256:4d9320a8ce44b13b8ce873301121e318f7d79f7649ecde4cf05006f6f6ed4d24
odf4/odf-multicluster-operator-bundle@sha256:615539fe9f5a9d2bbc9d07c0baa3d95104583aa15ce6d1c1e748df9bf6177119
odf4/odf-multicluster-rhel9-operator@sha256:b6eb893e39b13a069aa3997dc60051f95be9cb3d848aa055827a75e64dd6951e
odf4/odf-must-gather-rhel9@sha256:126bc1adb7e90d3713786349de17a6a870723bb36947ebf3fdf078290131f287
odf4/odf-operator-bundle@sha256:7fa7260676883d84d141d1af0450b2b25a2db2bb2c7495db6568f74cf1a53632
odf4/odf-rhel9-operator@sha256:74e361639f963a5b8b6e375acb6b609efca24be880d331b1cc18aadefc237e6b
odf4/odr-cluster-operator-bundle@sha256:176ffd6f0e316cb19953325a291865cfe1f30b2bd1f20f1943a82a1208e6473e
odf4/odr-hub-operator-bundle@sha256:c721e98bdb8fe36817412854d14492a27c465739f3eaa77ae9c6e4be44041cff
odf4/odr-rhel9-operator@sha256:550a83d98f000f7eb84e04da74eaaf18191cf7df0ec15865133db1d1835be23f
odf4/rook-ceph-rhel9-operator@sha256:cc1e68d4059201a72fa1aa0b821a97bb7e8e605ae271c55cc57c3f437b0a9540

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility