Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2024:5835 - Bug Fix Advisory
Issued:
2024-08-26
Updated:
2024-08-26

RHBA-2024:5835 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated RHEL-8 based Middleware Containers container images

Type/Severity

Bug Fix Advisory

Topic

Updated RHEL-8 based Middleware Containers container images are now available

Description

The RHEL-8 based Middleware Containers container images have been updated to address the following security advisory: RHSA-2024:5654 (see References)

Users of RHEL-8 based Middleware Containers container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The RHEL-8 based Middleware Containers container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift Container Platform 4.10 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.9 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.9 for RHEL 7 x86_64
  • Red Hat OpenShift Container Platform 4.8 for RHEL 7 x86_64
  • Red Hat OpenShift Container Platform 3.11 x86_64
  • Red Hat OpenShift Container Platform for Power 4.10 for RHEL 8 ppc64le
  • Red Hat OpenShift Container Platform for Power 4.9 for RHEL 8 ppc64le
  • Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.10 for RHEL 8 s390x
  • Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.9 for RHEL 8 s390x

Fixes

  • BZ - 2270498 - CVE-2024-2398 curl: HTTP/2 push headers memory-leak

CVEs

  • CVE-2024-2398

References

  • https://access.redhat.com/errata/RHSA-2024:5654
  • https://access.redhat.com/containers

ppc64le

fuse7/fuse-console-rhel8@sha256:6ec488c3f3f5b5cae7c8ae4fae08c85a0d833b3cb2cc6567daed707db7d29fbd
fuse7/fuse-console-rhel8-operator@sha256:33eb21b5a285d9968b0478550e7c48b10c11c0e7ab839cc159024d7416cdac2a
fuse7/fuse-java-openshift-jdk11-rhel8@sha256:0dbf9d51525f23f094894087493d651612df968f988bbb31e457a16cc10acdf2
fuse7/fuse-java-openshift-jdk17-rhel8@sha256:e421583ce7f479efbf6ac54d9926ee68c2c95ca9cee98c3c5532c3ffd1f6c59a

s390x

fuse7/fuse-console-rhel8@sha256:6dbb19b401bc8b01c092e71c6d6ab5c21c594d797904bba6d9882fabe85c5562
fuse7/fuse-console-rhel8-operator@sha256:dbc8d5761886523f2a7702971bd5d0899cc833d49bbb78038c58b9ac346029cb
fuse7/fuse-java-openshift-jdk11-rhel8@sha256:7120752df6c1e0fc54d395ccb500e7519d16a57ce09c66d8e88a19ebea0067ff
fuse7/fuse-java-openshift-jdk17-rhel8@sha256:b01ada9c88c4930e3a8a118d1ce270172dfde85da12362e22e8500d4e453753f

x86_64

fuse7/fuse-apicurito-generator-rhel8@sha256:67593d3d699250baf19355ba3c7893eb51121b4e19624d99a84376cce2c661ba
fuse7/fuse-apicurito-rhel8@sha256:36a34078b9783ce364cc2324afcd8c70ed23d0e67c670c6da2111fe897063a18
fuse7/fuse-apicurito-rhel8-operator@sha256:95ecd3d534bb2c9da3237dca81e62d5e68435d1f592d2d821e9949c03dfc17fd
fuse7/fuse-console-rhel8@sha256:cee55d33344e4a656f4ee946dd2ac2b1573a373fef0dc64dc0554c1604c183e4
fuse7/fuse-console-rhel8-operator@sha256:debfbc581e31b6d29e3d7f552d1842c956c683a922cac38163014eddb861de36
fuse7/fuse-eap-openshift-jdk11-rhel8@sha256:2f3be3d0fdc2ffe5c58c92ae9eb83270001d2b53c573cb0d76bf7334885daa9d
fuse7/fuse-eap-openshift-jdk17-rhel8@sha256:6920f9d00129fda68708dc8cdbe96e74db2604f3ad038ba9671a7da0236ac421
fuse7/fuse-java-openshift-jdk11-rhel8@sha256:24f049785035cbfb01b2a0cec303b08448495442a66985ad26cb3d95c6d7d966
fuse7/fuse-java-openshift-jdk17-rhel8@sha256:f081923d9d077d19370ca0c851c109a78e9334f665e4c2aea9af864799234f2d
fuse7/fuse-java-openshift-rhel8@sha256:4239e0345c89cae4443096046f3cb2324fb0e9102b9c12bf9692b77c5dee573b
fuse7/fuse-karaf-openshift-jdk11-rhel8@sha256:5a0a845412b82c0aa00d89a69fd7b2aa905b931ef49a1d1b6e563a5d16fe2dfd
fuse7/fuse-karaf-openshift-jdk17-rhel8@sha256:f31b936eb42f2ac3a15dffce7a7d2fc9c338737582811d9e01445c752afcfa68
fuse7/fuse-karaf-openshift-rhel8@sha256:f13be25aa0b0814fb0ef42e15b7b10a1de26afeb55b08b4d442ec5b85bbed85f

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility