Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2024:5926 - Bug Fix Advisory
Issued:
2024-08-28
Updated:
2024-08-28

RHBA-2024:5926 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat OpenShift GitOps 1.11 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat OpenShift GitOps 1.11 container images are now available

Description

The Red Hat OpenShift GitOps 1.11 container images have been updated to address the following security advisory: RHSA-2024:5654 (see References)

Users of Red Hat OpenShift GitOps 1.11 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat OpenShift GitOps 1.11 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift GitOps 1.11 x86_64
  • Red Hat OpenShift GitOps for IBM Power, little endian 1.11 ppc64le
  • Red Hat OpenShift GitOps for IBM Z and LinuxONE 1.11 s390x
  • Red Hat OpenShift GitOps for ARM 64 1.11 aarch64

Fixes

  • BZ - 2270498 - CVE-2024-2398 curl: HTTP/2 push headers memory-leak

CVEs

  • CVE-2024-1737
  • CVE-2024-1975
  • CVE-2024-2398
  • CVE-2024-6345
  • CVE-2024-37370
  • CVE-2024-37371
  • CVE-2024-37891

References

  • https://access.redhat.com/errata/RHSA-2024:5654
  • https://access.redhat.com/containers

aarch64

openshift-gitops-1/argo-rollouts-rhel8@sha256:299e8a2862778b08ace53e5de8e86a0cff6f54e305586cd4a05d488f7792f7c2
openshift-gitops-1/argocd-rhel8@sha256:18ea8517299860e7b7513733d7505f17f3778d47dbba5997f211b45f8fef6b1a
openshift-gitops-1/console-plugin-rhel8@sha256:a35b7078804b77920c1c59d6f085c181ec352bb4746ba1c0e808178158b9357c
openshift-gitops-1/dex-rhel8@sha256:55d0dc283b322db27a11fed572fbd7480021ebf0e097fdc0cc1f899ca0b577e3
openshift-gitops-1/gitops-rhel8@sha256:b72cc56adef7d9ac78433f7249be76b5daf0aadfd3daf03dfbf13e554a6eb637
openshift-gitops-1/gitops-rhel8-operator@sha256:81a8a233f6193e6fb427bd70415b3d0c20b1b13f808833f09a4059f93c6d7288
openshift-gitops-1/kam-delivery-rhel8@sha256:7ef9fadc124bcf5cb44497d0adb8392bfd716d2fcf1562adc03c9f8bbc2f4263

ppc64le

openshift-gitops-1/argo-rollouts-rhel8@sha256:e170fcdd2a76f0cd9228b45ee3c0f946c6a50c11c8ee28d7567f43109f651706
openshift-gitops-1/argocd-rhel8@sha256:19b69007a4ed8a657121c66eea672cb658fe8288108b3c0723af210f9e635b0e
openshift-gitops-1/console-plugin-rhel8@sha256:a1887bd1bb6deecc93615a328b76f9f596b5387ab9e77b5b67b92f012408b1d1
openshift-gitops-1/dex-rhel8@sha256:86559c718978920ceffc7b35bae7d19eaa58fc7eff2bddec1d44ac8e687e6c3e
openshift-gitops-1/gitops-rhel8@sha256:0ec09b94ac50d3a5e01a1b22367353265c8b20403bf79eeea883c70fea2d77f3
openshift-gitops-1/gitops-rhel8-operator@sha256:fdf8751a49f7ab902e77381b95daa9509066175a32540bcf46e5ea3502e913ee
openshift-gitops-1/kam-delivery-rhel8@sha256:23f9bca6509de00d62540d6a07636f47f35a76e6057150c9cf9eeefc6dbe2aea

s390x

openshift-gitops-1/argo-rollouts-rhel8@sha256:8cd1d620d49705520414946d082ba3c221a533e2d3f703080ccd5e9190e8007a
openshift-gitops-1/argocd-rhel8@sha256:330cd315bde95959cbb1352f555d4e3322f3647fecbbf05da5afead9adcd1a5e
openshift-gitops-1/console-plugin-rhel8@sha256:81bb84a6939eabaf3ebc1189861560ee0b5eacff1869435288636068fcef5eea
openshift-gitops-1/dex-rhel8@sha256:e25afe9adaee55ee3df6163a80a34b864cc81a666bff9dcd81f88691381a0b01
openshift-gitops-1/gitops-rhel8@sha256:b22b7cabc5336528b13069a4f1905c30e8818ab4709d2192ca0b7f3dcf91e1c1
openshift-gitops-1/gitops-rhel8-operator@sha256:d6219d7947361390b1701cad1a15fb40e7428948feb6bc85f519b2ad5de75718
openshift-gitops-1/kam-delivery-rhel8@sha256:fd70ed79e25a0314bc22e587f8564bce44dadf6c75938039e1c4b6bda3e2263f

x86_64

openshift-gitops-1/argo-rollouts-rhel8@sha256:399db61ecda2ae51f2d0d3b3fb61b0daab676402c0dbe372241a8bcd16fda048
openshift-gitops-1/argocd-rhel8@sha256:4d3b57ca5113664c26ef218b6ff69e21db6f8c1b6e0fa12ec1607c4c94a705e0
openshift-gitops-1/console-plugin-rhel8@sha256:fc54dbfda85caf7e09bfa41754177b9862467350b259730f9756a27dff84ea69
openshift-gitops-1/dex-rhel8@sha256:8184fbd42eae9ea8aef65ad09091c9c607de426e7ef55f134ce8807eb3931678
openshift-gitops-1/gitops-rhel8@sha256:ff14b93b16a9779ed59e5bc13434302717582fe8ac6944974ae2e0e8d5d8e3c7
openshift-gitops-1/gitops-rhel8-operator@sha256:27d175b0030ac7d82d7467cdab3a814ebe677dc7de25b301beee2451a0df94f5
openshift-gitops-1/kam-delivery-rhel8@sha256:d6cc33224151db2bc69af5f6e09710be4b2ad4e867484e50c2f3fb8da98916ea

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility