Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2024:4984 - Bug Fix Advisory
Issued:
2024-08-01
Updated:
2024-08-01

RHBA-2024:4984 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat Enterprise Linux 9 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat Enterprise Linux 9 container images are now available

Description

The Red Hat Enterprise Linux 9 container images have been updated to address the following security advisory: RHSA-2024:4726 (see References)

Users of Red Hat Enterprise Linux 9 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat Enterprise Linux 9 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat Enterprise Linux for x86_64 9 x86_64
  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.6 x86_64
  • Red Hat Enterprise Linux Server - AUS 9.6 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 9 s390x
  • Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.6 s390x
  • Red Hat Enterprise Linux for Power, little endian 9 ppc64le
  • Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.6 ppc64le
  • Red Hat Enterprise Linux for ARM 64 9 aarch64
  • Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.6 aarch64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.6 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.6 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.6 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.6 s390x

Fixes

  • BZ - 2295012 - CVE-2024-38473 httpd: Encoding problem in mod_proxy
  • BZ - 2295013 - CVE-2024-38474 httpd: Substitution encoding issue in mod_rewrite
  • BZ - 2295014 - CVE-2024-38475 httpd: Improper escaping of output in mod_rewrite
  • BZ - 2295016 - CVE-2024-38477 httpd: NULL pointer dereference in mod_proxy
  • BZ - 2295022 - CVE-2024-39573 httpd: Potential SSRF in mod_rewrite

CVEs

(none)

References

  • https://access.redhat.com/errata/RHSA-2024:4726
  • https://access.redhat.com/containers

aarch64

ubi9/httpd-24@sha256:80dbf8ee1b55ee91eac027aad6f19c601a110ecf3da2933e36a6d30b16a63763
rhel9/httpd-24@sha256:80dbf8ee1b55ee91eac027aad6f19c601a110ecf3da2933e36a6d30b16a63763
ubi9/perl-532@sha256:adb995cea2e5e859b7f085753dbdfff77938ab46e6d4e33ae8b75dcb6a6ab12b
rhel9/perl-532@sha256:adb995cea2e5e859b7f085753dbdfff77938ab46e6d4e33ae8b75dcb6a6ab12b
rhel9/php-80@sha256:c5d2aad5d632449e995a96c3ef3372547223f565806a7eb5e66ac61b6a991dbb
ubi9/php-80@sha256:c5d2aad5d632449e995a96c3ef3372547223f565806a7eb5e66ac61b6a991dbb
rhel9/php-81@sha256:cb40c9465aa150a1e5520590a2b1249ffb9c58e21e7e727db7fbb85010013c61
ubi9/php-81@sha256:cb40c9465aa150a1e5520590a2b1249ffb9c58e21e7e727db7fbb85010013c61
rhel9/php-82@sha256:8ee043d47d2c7dde523b03fe21b9cb146406bde394c697eb8b3f0a4e43c29910
ubi9/php-82@sha256:8ee043d47d2c7dde523b03fe21b9cb146406bde394c697eb8b3f0a4e43c29910
rhel9/python-311@sha256:cb3d8942795eb69b957e4f44be53fa376df920f9e870f9ba90346a590279fd43
ubi9/python-311@sha256:cb3d8942795eb69b957e4f44be53fa376df920f9e870f9ba90346a590279fd43
rhel9/python-312@sha256:0f2f933603ad0e17dd936ea9a95a3b714e612542c144805aa90c03f2700c343b
ubi9/python-312@sha256:0f2f933603ad0e17dd936ea9a95a3b714e612542c144805aa90c03f2700c343b
ubi9/python-39@sha256:7120ca585f22b4e2e966f834305139d4c3f2962b10ce4832297e73c4eaf14956
rhel9/python-39@sha256:7120ca585f22b4e2e966f834305139d4c3f2962b10ce4832297e73c4eaf14956

ppc64le

ubi9/httpd-24@sha256:7d2d7747ecc17b56a23954c3416678615fb099ea78fb460d90adb4d8a362f63c
rhel9/httpd-24@sha256:7d2d7747ecc17b56a23954c3416678615fb099ea78fb460d90adb4d8a362f63c
ubi9/perl-532@sha256:8528c04b0ceb6260401500733f8dccd1d21e9a6fa53409b539ae18ef3c89bdf5
rhel9/perl-532@sha256:8528c04b0ceb6260401500733f8dccd1d21e9a6fa53409b539ae18ef3c89bdf5
rhel9/php-80@sha256:043bf2ac77c18d3ae79db562bb5ec2938eea312e646b9f2db08396ef79c92b5f
ubi9/php-80@sha256:043bf2ac77c18d3ae79db562bb5ec2938eea312e646b9f2db08396ef79c92b5f
rhel9/php-81@sha256:1684b85284ac61600c57a833518ed0fead89f84d04448f4f7ede76ff6e65d312
ubi9/php-81@sha256:1684b85284ac61600c57a833518ed0fead89f84d04448f4f7ede76ff6e65d312
rhel9/php-82@sha256:2f31f7b8003454d6b29adf1305ebc5b42a15d68364198ceca568ee1c690f9e36
ubi9/php-82@sha256:2f31f7b8003454d6b29adf1305ebc5b42a15d68364198ceca568ee1c690f9e36
rhel9/python-311@sha256:bbe24455a1d23c23d38825931eb86216ef87e370dee8e843efd87264d8f98d6e
ubi9/python-311@sha256:bbe24455a1d23c23d38825931eb86216ef87e370dee8e843efd87264d8f98d6e
rhel9/python-312@sha256:3915c711a62e4e2987c5332c4fa07180f1b1b3bf89b14597b473bc59a6f4bcc1
ubi9/python-312@sha256:3915c711a62e4e2987c5332c4fa07180f1b1b3bf89b14597b473bc59a6f4bcc1
ubi9/python-39@sha256:8a5f2f7aeb42f6476c15578411d5477a3dce1ef136b9ce90df61bb8d7c35e895
rhel9/python-39@sha256:8a5f2f7aeb42f6476c15578411d5477a3dce1ef136b9ce90df61bb8d7c35e895

s390x

ubi9/httpd-24@sha256:65802d08ce55078f9ecf4a563c07c5a4849456b3479b02de14646b04777235bb
rhel9/httpd-24@sha256:65802d08ce55078f9ecf4a563c07c5a4849456b3479b02de14646b04777235bb
ubi9/perl-532@sha256:cd999cd53356d2ee72494f64debd279e273cf6809e89e243669b1fba58531dc2
rhel9/perl-532@sha256:cd999cd53356d2ee72494f64debd279e273cf6809e89e243669b1fba58531dc2
rhel9/php-80@sha256:164e6c59e70015d76e5179ac12af99e7751b69036e30ce4eedc6fae6420e15a1
ubi9/php-80@sha256:164e6c59e70015d76e5179ac12af99e7751b69036e30ce4eedc6fae6420e15a1
rhel9/php-81@sha256:3618a8ec26ef093837e05d9a3e1dc1d72c806ebb8b591bdcb41f7a1c7e5830f7
ubi9/php-81@sha256:3618a8ec26ef093837e05d9a3e1dc1d72c806ebb8b591bdcb41f7a1c7e5830f7
rhel9/php-82@sha256:a18cf3eab5d60a1a303e25527a471f2da99c4f4490ed195bbc68c5a92082ced1
ubi9/php-82@sha256:a18cf3eab5d60a1a303e25527a471f2da99c4f4490ed195bbc68c5a92082ced1
rhel9/python-311@sha256:76e9318d53778f37cabf8187c2bfebe0262cdbc1c846663c17e6e5bd62a2ec1f
ubi9/python-311@sha256:76e9318d53778f37cabf8187c2bfebe0262cdbc1c846663c17e6e5bd62a2ec1f
rhel9/python-312@sha256:2b57100061a2ae797a0f21f2352c245a3e6dfd512dcc22f9e54885fae3ad2552
ubi9/python-312@sha256:2b57100061a2ae797a0f21f2352c245a3e6dfd512dcc22f9e54885fae3ad2552
ubi9/python-39@sha256:d4129c66121a8ef4f7bc517107389175646f3ca24ff410fe998b01a4b7a03d5e
rhel9/python-39@sha256:d4129c66121a8ef4f7bc517107389175646f3ca24ff410fe998b01a4b7a03d5e

x86_64

ubi9/httpd-24@sha256:f6a99e33d5044e6214578a5824d069de4086f70e50e7b856c3cfce1819150ec9
rhel9/httpd-24@sha256:f6a99e33d5044e6214578a5824d069de4086f70e50e7b856c3cfce1819150ec9
ubi9/perl-532@sha256:54dc9dc74f21467791ef7cd01198b749254175a9e4c7c1091b7674dd09a5ed9b
rhel9/perl-532@sha256:54dc9dc74f21467791ef7cd01198b749254175a9e4c7c1091b7674dd09a5ed9b
rhel9/php-80@sha256:71a94655f32ae4a4b941355aeeffac7eebeb0663e3d81e3220ab46a4ddcfc367
ubi9/php-80@sha256:71a94655f32ae4a4b941355aeeffac7eebeb0663e3d81e3220ab46a4ddcfc367
rhel9/php-81@sha256:a461f082a997974049d21476f020495208a48b19b8755a29f5dfa7e2593dec74
ubi9/php-81@sha256:a461f082a997974049d21476f020495208a48b19b8755a29f5dfa7e2593dec74
rhel9/php-82@sha256:7f709d055c67f2260567fc0901d010577f8ff1648c376151c89db51e92224321
ubi9/php-82@sha256:7f709d055c67f2260567fc0901d010577f8ff1648c376151c89db51e92224321
rhel9/python-311@sha256:86f3018d69183c7ea2ba2a229b9d8b2a95b1e53a1460fdf7c97d36be5dd7f96e
ubi9/python-311@sha256:86f3018d69183c7ea2ba2a229b9d8b2a95b1e53a1460fdf7c97d36be5dd7f96e
rhel9/python-312@sha256:48331a2efec9f0e6ebeabe6a058c82284dc6192b8fd1165017afb24d87e9f5fb
ubi9/python-312@sha256:48331a2efec9f0e6ebeabe6a058c82284dc6192b8fd1165017afb24d87e9f5fb
ubi9/python-39@sha256:5510844328bf90c97c38b6c246de9ea6f984af9d42a3b867a40a0c212ea759e5
rhel9/python-39@sha256:5510844328bf90c97c38b6c246de9ea6f984af9d42a3b867a40a0c212ea759e5

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility