Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2024:4513 - Bug Fix Advisory
Issued:
2024-07-11
Updated:
2024-07-11

RHBA-2024:4513 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat OpenStack Platform 17.1 for RHEL 9 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat OpenStack Platform 17.1 for RHEL 9 container images are now available

Description

The Red Hat OpenStack Platform 17.1 for RHEL 9 container images have been updated to address the following security advisory: RHSA-2024:4368 (see References)

Users of Red Hat OpenStack Platform 17.1 for RHEL 9 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat OpenStack Platform 17.1 for RHEL 9 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenStack 17.1 for RHEL 9 x86_64

Fixes

  • BZ - 2280421 - CVE-2024-32002 git: Recursive clones RCE
  • BZ - 2280428 - CVE-2024-32004 git: RCE while cloning local repos
  • BZ - 2280446 - CVE-2024-32465 git: additional local RCE
  • BZ - 2280466 - CVE-2024-32020 git: insecure hardlinks
  • BZ - 2280484 - CVE-2024-32021 git: symlink bypass

CVEs

  • CVE-2024-4467
  • CVE-2024-6387
  • CVE-2024-32002
  • CVE-2024-32004
  • CVE-2024-32020
  • CVE-2024-32021
  • CVE-2024-32465

References

  • https://access.redhat.com/errata/RHSA-2024:4368
  • https://access.redhat.com/containers

x86_64

rhosp-rhel9/openstack-aodh-api@sha256:e16b1970f605b01f8c337fb95a8b29ddcfe846e1ff617aafe998042202a090de
rhosp-rhel9/openstack-aodh-base@sha256:b32b4aaa726a9753dbecb8ce1ddad9d309217e35d4a72cb622e054b52ae4d52d
rhosp-rhel9/openstack-aodh-evaluator@sha256:6abddb99c58918fcfcc77e5cfbf357a110133fe4adfef3b7ecb8eaf1a912df14
rhosp-rhel9/openstack-aodh-listener@sha256:b816b87484d97d95510805e74d5a9940a56f10ba33116705632997f7b06d2e85
rhosp-rhel9/openstack-aodh-notifier@sha256:fb20c64c7c3684e27ae43d84ad71db971aaab33ed5217b261607811e3ccd80d0
rhosp-rhel9/openstack-barbican-api@sha256:a3083ea52158334b94ed12125058c08ed38a5d9eac9dd2c27ca81806234ec056
rhosp-rhel9/openstack-barbican-base@sha256:be11a4f455e54cf63ea93f110b0ac2a9098ab72aab4565ac7f56383ec05266c7
rhosp-rhel9/openstack-barbican-keystone-listener@sha256:be1a7be3c2b5dc03c6d8a74e9112d9eadf3c6a6a2770b734293a62927aee0162
rhosp-rhel9/openstack-barbican-worker@sha256:7a180e27f5c3f1cd3b1eba7493df11156d63b0ccafdb5da46c8647c0277a7e18
rhosp-rhel9/openstack-ceilometer-base@sha256:df6b68640821f634bf9167802f2105f67762ea2ca5d32fab100a80e8207ba3b0
rhosp-rhel9/openstack-ceilometer-central@sha256:1ba8fbb87c052b8a0a5469ff68a6a49e9bde8ad0298dd740bb2a7a9ad3d1f86c
rhosp-rhel9/openstack-ceilometer-compute@sha256:241b6adbcfc9de7a1378709723c4f28efd5162a894cab7f78c81f6cc82ffdbd2
rhosp-rhel9/openstack-ceilometer-ipmi@sha256:f6e71e5f5039caec66a1a527490b1dd533ddb3a2aa6d06ed71159e9e238d7f90
rhosp-rhel9/openstack-ceilometer-notification@sha256:85b9239519eb63182f7df643e5a0f7d84b1c615083c1fe0dbaf7a4e8ffce8744
rhosp-rhel9/openstack-cinder-api@sha256:f22b86028d6a3474167afea9fedabc991de4c60d5db710ebd798e720d36a3f12
rhosp-rhel9/openstack-cinder-backup@sha256:7137e7d6dd7d2de8e19e5a82b13f0f62ff5c9eddcf68907351aa3554f648ccb4
rhosp-rhel9/openstack-cinder-base@sha256:8cf4d1e9749ee43124cc0d03ac2028eb61ab3b508bd4ae4398e791bfa8e540b2
rhosp-rhel9/openstack-cinder-scheduler@sha256:da49c65e436407ed071e595dda9564d51051bd563733a80cf08c488b3f6e2f7b
rhosp-rhel9/openstack-cinder-volume@sha256:7980fc387441d21364f59c96f3341c55b84efc5c58731e5289c1e989940a29b3
rhosp-rhel9/openstack-dependencies@sha256:ea7a6cd7a83acbf12d75b33e669c5e97e3546cac3ccfccf3fa7a8ba518f54956
rhosp-rhel9/openstack-designate-api@sha256:588c5e88ef7b5154f1e59329ba681362c9c8e619294ca68346421887e435dec1
rhosp-rhel9/openstack-designate-backend-bind9@sha256:af11b0ea09063cae97ad22c847495d6d3d37fea7396e575d560450916de94592
rhosp-rhel9/openstack-designate-base@sha256:8057530fc2fa75a29f3443b00009ff625873066b1b79d143a7d18d430d902bfa
rhosp-rhel9/openstack-designate-central@sha256:093d8498d407d86771c88e14db5bad4f4d2f877e43f396dbf59f7559f3d38126
rhosp-rhel9/openstack-designate-mdns@sha256:d5896df05c0b53dd535789dc49d9eb3beff7a8457d2172d0fbb8f65d58ab3190
rhosp-rhel9/openstack-designate-producer@sha256:9a66a7f7cebc429db405df2be075b42405c9b5e2c087bedceab11449e7293b16
rhosp-rhel9/openstack-designate-sink@sha256:60da2767a178b34b5789ab3b6a63ae31e15f2b2d73170027a68a34cc986b9c66
rhosp-rhel9/openstack-designate-worker@sha256:786170d5ec32c93023ad58c20bb41a8d28b73f96119733e9ef0247ec7564e3c7
rhosp-rhel9/openstack-glance-api@sha256:59f1cb061f27e7167ffe2f6736578c26468b1503066bc5023477d0b6681b66a9
rhosp-rhel9/openstack-gnocchi-api@sha256:939e0b2def7a4d57cb4e8e1b4d61f8d1ed3434bed1cc4370636b7187c0e399bf
rhosp-rhel9/openstack-gnocchi-base@sha256:95779f261a6667adb2d40af4dc7b10be5e2b53a1c3c4f4375bac300a28fc925f
rhosp-rhel9/openstack-gnocchi-metricd@sha256:4c396f676e7c1a54e029ac961bd8d26ed6c2f5e02b5332e2061ccb6ba27e4b01
rhosp-rhel9/openstack-gnocchi-statsd@sha256:b799f60fcbc7e95a52a971a8e9f51402c85e23ee4ab7ccd395fa026ee9454fdf
rhosp-rhel9/openstack-heat-all@sha256:f6c02b136f70d7b5e03263148077293c3ee122d911f1d07a1cac90582da4e58b
rhosp-rhel9/openstack-heat-api@sha256:a16bd9acae80147f1f975f4d35f640f734fccd4bcfd5021a13acf4cbd62bb511
rhosp-rhel9/openstack-heat-api-cfn@sha256:a64f7328044fa0fc632a25aeaf2a2b64c8b12eaf961046fc7fb7146371c44588
rhosp-rhel9/openstack-heat-base@sha256:aa9326d9da75191470f3eb82d81ab119266b9462121d47921dc012492ef2dd59
rhosp-rhel9/openstack-heat-engine@sha256:8c9363c9b35c65196af2eedc8e9e55a69f60195374c4af94e271c88901ac18a0
rhosp-rhel9/openstack-horizon@sha256:27b9040ee4482809c9cefec25feab95e21b798186b3dc94b12bc0dc4278c36d3
rhosp-rhel9/openstack-ironic-api@sha256:c05dbb5d005829b1dbc5167d4a9eed68c5d3e94c8b61681039acecd701dc53ec
rhosp-rhel9/openstack-ironic-base@sha256:b574ad3e3dbc0772d21632f6245198aa4a0fa9756cdaf61dd94a558f657b8835
rhosp-rhel9/openstack-ironic-conductor@sha256:309f760c7568883c16763ae66df7dba38e66e17c83ef6c59d3a797f29abcd874
rhosp-rhel9/openstack-ironic-inspector@sha256:1e45f22d0b68f9fb47c9a980b78b52eb1637888b54cda5730b24b6dc1f9ccd29
rhosp-rhel9/openstack-ironic-neutron-agent@sha256:e7cace906a4d1549bd9aa61f7e03e744b34b9dbf4207b7c5049ff787c9ca70a8
rhosp-rhel9/openstack-ironic-pxe@sha256:317b84a1beae2542e2628067757934f1c92e81d93490a48847912cc79c69ab1a
rhosp-rhel9/openstack-iscsid@sha256:d7c498c87d767794b9efc449f1339dabd50961970898ad576ad8a20b1023fa50
rhosp-rhel9/openstack-keystone@sha256:e63a2dbbac32c4795d28628cbd32f53fe1ff6a6cb89aace40c5eaeee1161eeec
rhosp-rhel9/openstack-manila-api@sha256:78e5a1c444c817c46bf69cf301caadf49994ab7fa644f24c14ed337a9e586a1e
rhosp-rhel9/openstack-manila-base@sha256:cdc51405c5fbfaa4c1144158f3e9f7980b5b0d2014d43f2b85e6375352861365
rhosp-rhel9/openstack-manila-scheduler@sha256:99509f4a1236687b6dbabf50d341f5014e5e0f01d117cdc3de8bcf959e754892
rhosp-rhel9/openstack-manila-share@sha256:3d08a88db4c5958a50813425400782d13f33a7ed6349529435bdc9e0a1b20b78
rhosp-rhel9/openstack-neutron-agent-base@sha256:078ce53e37776556b1731f4ce4f12f9824c488796a11e7c5a00008ff063790e8
rhosp-rhel9/openstack-neutron-base@sha256:105c014adf7009225a76b79cea63dfd1dd484ce1ac555d8c8565672018e6c092
rhosp-rhel9/openstack-neutron-dhcp-agent@sha256:cfb3c64133dd77ca798307c9a03f77e072a502c773b52508cc5c68d45f4f3c8c
rhosp-rhel9/openstack-neutron-l3-agent@sha256:daa842a36dbc347d1b64e761521b00ad3b059ab618f89c7e3a20f20ddbb3f2ef
rhosp-rhel9/openstack-neutron-metadata-agent@sha256:818b14d1b134c377bb37a0def284efe01bc035a79bea71cd58ee2dc6e0355d3b
rhosp-rhel9/openstack-neutron-metadata-agent-ovn@sha256:8925bb4c0d37166d24a2e8079b90aca8df0a037ed5d43d3696bb32c92c856f8d
rhosp-rhel9/openstack-neutron-openvswitch-agent@sha256:b2958e969238d06d39ecdd073f56df3a65005daacf4ae22191a642861c84debb
rhosp-rhel9/openstack-neutron-server@sha256:e751badea6f67971e770ed5dcc8673fa99b70d41488c919aaaad61746263b263
rhosp-rhel9/openstack-neutron-sriov-agent@sha256:99d1ba2e7ac5eedb10e9f43851fc6ddb69b95b9a5ad39d2fecbe87d7df7b8e28
rhosp-rhel9/openstack-nova-api@sha256:b98a48d946a362d8feaa6953351c9e64a86336b87e1f8dd0d1b71495363a2f1d
rhosp-rhel9/openstack-nova-base@sha256:51064d890c9111b7ac97bbf0c4d28030726831841af77a08dc1917b4eaa30082
rhosp-rhel9/openstack-nova-compute@sha256:82150ba1351c58a4a26357c724cd6aa8ce288ed654430d3a65b000e1eabe7024
rhosp-rhel9/openstack-nova-compute-ironic@sha256:f1d17eae3766d0a2fa52f32c25d0d9b97edef37f680cb07e3a21c4c85aac11de
rhosp-rhel9/openstack-nova-conductor@sha256:dcdb83bac93df495f2819a26c85d88c501a64fa93d9d05dbb896df97b00ffac3
rhosp-rhel9/openstack-nova-libvirt@sha256:e14d19698692310a14d8f55e00e9242936cbcaf3dbedb2965373efd1d2a5164b
rhosp-rhel9/openstack-nova-novncproxy@sha256:9e5cc415cf4bacae1198529e32fccdca06c93532321adaa7cae6164f8bd826c7
rhosp-rhel9/openstack-nova-scheduler@sha256:e46ba031df0ed337a8254b62969d27bda3ec5c52fc3fef896cb408e1e1e31b1b
rhosp-rhel9/openstack-novajoin-base@sha256:e40d8d475ac033f46ae423bd8cb0fc5b07299418766026a963bd2d6c0e0aa1d7
rhosp-rhel9/openstack-novajoin-notifier@sha256:a04e857095346fd79ee954a0e3b6f0f281efbf97e44d41ba37d84954cba62fa5
rhosp-rhel9/openstack-novajoin-server@sha256:bf36a07ab48a02242224b9b63814cfe4d4a581c17421d620548edb41495c10c5
rhosp-rhel9/openstack-octavia-api@sha256:d8a764fac00ebb614da37f098be97b5dbf91f2119e5ccb99e4fca1f292283fd0
rhosp-rhel9/openstack-octavia-base@sha256:d2ba1b598dd7bcdd209b542d6ddd1719dc70d84cad7b91aadc5d96d27ed28c97
rhosp-rhel9/openstack-octavia-health-manager@sha256:7d8516a4441615086f211507109bcf89cd4f35d3058ecded76bc548d55314318
rhosp-rhel9/openstack-octavia-housekeeping@sha256:9ad531e7b49a8f4a8093b64a2f18f25c1af5e969a2d6d9e73a6e9d34a1858e84
rhosp-rhel9/openstack-octavia-worker@sha256:cce66d3792bdcfe9a7684ffbf1a755e807fc2943ecb77cf1e9b387d88683db3a
rhosp-rhel9/openstack-ovn-bgp-agent@sha256:a5fe4991a4b2c6c2da8e4b69338d0ef540f5d707ca9cf3ae52d657f80d6f1f87
rhosp-rhel9/openstack-placement-api@sha256:05852ca9262c7988ac4a0ea76305ae7a1640545458bf52c094e59cd20ead0026
rhosp-rhel9/openstack-swift-account@sha256:bb6d94c484dcd790ea6e397a4e4adb9fdd4627c1066ee938165427729dd9f695
rhosp-rhel9/openstack-swift-base@sha256:50d27a2b9a486101f2b0a61e30a67e8f0953462001e19208c98f37e55d6d2069
rhosp-rhel9/openstack-swift-container@sha256:e574ff2769fa1a3b422ed004db4ced6480bce745403c40ab6faf87e56c72b097
rhosp-rhel9/openstack-swift-object@sha256:20fa14794dfe9cded33cb0fa863230559f25150818ec2f6c94cdd93f9f11f0ba
rhosp-rhel9/openstack-swift-proxy-server@sha256:bd59307fc52aaef72cd5b738b8f29db831a1cf36db406a760f643d452f8d2563
rhosp-rhel9/openstack-tempest@sha256:199449dbb5b136c62975d57fa04427a7b833c2a31e2d166f4edc56abfcdbbbd2
rhosp-rhel9/openstack-tripleoclient@sha256:a2b6282b91a1de820905b2901de0c3fb5cae8802e3eb7c86095e89021a9ac28b

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat, Inc.

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility