Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2024:6231 - Bug Fix Advisory
Issued:
2024-09-03
Updated:
2024-09-03

RHBA-2024:6231 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat Enterprise Linux 8 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat Enterprise Linux 8 container images are now available

Description

The Red Hat Enterprise Linux 8 container images have been updated to address the following security advisory: RHSA-2024:5814 (see References)

Users of Red Hat Enterprise Linux 8 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat Enterprise Linux 8 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat Enterprise Linux for x86_64 8 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 8 s390x
  • Red Hat Enterprise Linux for Power, little endian 8 ppc64le
  • Red Hat Enterprise Linux for ARM 64 8 aarch64

Fixes

  • BZ - 2293200 - CVE-2024-28863 node-tar: denial of service while parsing a tar file due to lack of folders depth validation
  • BZ - 2296417 - CVE-2024-22020 nodejs: Bypass network import restriction via data URL
  • BZ - 2296990 - CVE-2024-22018 nodejs: fs.lstat bypasses permission model
  • BZ - 2299281 - CVE-2024-36137 nodejs: fs.fchown/fchmod bypasses permission model

CVEs

(none)

References

  • https://access.redhat.com/errata/RHSA-2024:5814
  • https://access.redhat.com/containers

aarch64

rhel8/nodejs-20@sha256:5e8d73a49b7811c756b5f1b9fa358d8c52e875af4962069351d272625b806ac7
ubi8/nodejs-20@sha256:5e8d73a49b7811c756b5f1b9fa358d8c52e875af4962069351d272625b806ac7
ubi8/nodejs-20-minimal@sha256:4772edc2452bf05628919464881320ede7e83adf68b3f97c1a7606d61267810a
rhel8/nodejs-20-minimal@sha256:4772edc2452bf05628919464881320ede7e83adf68b3f97c1a7606d61267810a
rhel8/perl-526@sha256:27b783050de7d9288197d38772880bf3f8a818d1ba4d2889ca31bc0f4941f2e5
ubi8/perl-526@sha256:27b783050de7d9288197d38772880bf3f8a818d1ba4d2889ca31bc0f4941f2e5
rhel8/perl-532@sha256:a0ef4caccada44063ff1064fbc01bceefb1a9cb59883162fa8cf5b4cd46e1631
ubi8/perl-532@sha256:a0ef4caccada44063ff1064fbc01bceefb1a9cb59883162fa8cf5b4cd46e1631
rhel8/php-74@sha256:75abca4630df949d45e951a60a28b536fe069cd691fc8232a8e9806496918dd3
ubi8/php-74@sha256:75abca4630df949d45e951a60a28b536fe069cd691fc8232a8e9806496918dd3
ubi8/php-80@sha256:21482f7406255b5860cec095d4d02ec6b7ab9e8f34821d87671cab9bd42c3094
rhel8/php-80@sha256:21482f7406255b5860cec095d4d02ec6b7ab9e8f34821d87671cab9bd42c3094
rhel8/php-82@sha256:b2aed01809376d4e3b0b14e6081a762d7c8dcd95f562f5120a1fcc96fa7c1ce5
ubi8/php-82@sha256:b2aed01809376d4e3b0b14e6081a762d7c8dcd95f562f5120a1fcc96fa7c1ce5
rhel8/python-311@sha256:655f9a4cc061c5183abb44bced7c0896aca2f96aa1c5df96c7d32f5957ba6b30
ubi8/python-311@sha256:655f9a4cc061c5183abb44bced7c0896aca2f96aa1c5df96c7d32f5957ba6b30
rhel8/python-312@sha256:50a46b953bca02e7ed0d23e20cdce11ee7af46d9e7dbd108e5519b0b988fe6ea
ubi8/python-312@sha256:50a46b953bca02e7ed0d23e20cdce11ee7af46d9e7dbd108e5519b0b988fe6ea
rhel8/python-36@sha256:7188836ef6eb077064fb9205b6cf3147ecf59895bd8fb241dd86b0a856caee4e
ubi8/python-36@sha256:7188836ef6eb077064fb9205b6cf3147ecf59895bd8fb241dd86b0a856caee4e
ubi8/python-39@sha256:5b7b2bc6f9461b2da341d945dd4892d2984d8153f2b9c2f1235d7c3fdb9784cc
rhel8/python-39@sha256:5b7b2bc6f9461b2da341d945dd4892d2984d8153f2b9c2f1235d7c3fdb9784cc
ubi8/ruby-25@sha256:f2f67729f480726c709e1d37dc84f64ddabe3700a4c0e512cc90a0db1ea88687
rhel8/ruby-25@sha256:f2f67729f480726c709e1d37dc84f64ddabe3700a4c0e512cc90a0db1ea88687
ubi8/ruby-31@sha256:660758b147217904d530c2d2a7774ae2278607dc5b30712cca15b1722f7244f3
rhel8/ruby-31@sha256:660758b147217904d530c2d2a7774ae2278607dc5b30712cca15b1722f7244f3
ubi8/ruby-33@sha256:4ffcc5f1033669c9c10a00308e8b879f1c5d018262951fb76175642494248ae4
rhel8/ruby-33@sha256:4ffcc5f1033669c9c10a00308e8b879f1c5d018262951fb76175642494248ae4
rhel8/s2i-base@sha256:410863559a7a2ee313a182758861bef9306904c8e1575fce5b5cc6a8b9bc7491
ubi8/s2i-base@sha256:410863559a7a2ee313a182758861bef9306904c8e1575fce5b5cc6a8b9bc7491

ppc64le

rhel8/nodejs-20@sha256:0f7edce904f2be722e689405bcfb896112aa923bc35eb5f201ccf39cc5077c80
ubi8/nodejs-20@sha256:0f7edce904f2be722e689405bcfb896112aa923bc35eb5f201ccf39cc5077c80
ubi8/nodejs-20-minimal@sha256:d5a3a333cd209da8cf5a07ae5637a57fa6516b97de3b152a0a8efee51cb814f0
rhel8/nodejs-20-minimal@sha256:d5a3a333cd209da8cf5a07ae5637a57fa6516b97de3b152a0a8efee51cb814f0
rhel8/perl-526@sha256:347935f5edca2065a911435e021c1472040e3b97dbab5e36a6569843485e6b35
ubi8/perl-526@sha256:347935f5edca2065a911435e021c1472040e3b97dbab5e36a6569843485e6b35
rhel8/perl-532@sha256:636f36a105ef253e28df8bc42314043bc351961d5a04812b13c16101bb084fa0
ubi8/perl-532@sha256:636f36a105ef253e28df8bc42314043bc351961d5a04812b13c16101bb084fa0
rhel8/php-74@sha256:634f148ca3e1778c7d8a9ffb43a47ace9c38a1dddd2c0be9225b7f5dc07531cd
ubi8/php-74@sha256:634f148ca3e1778c7d8a9ffb43a47ace9c38a1dddd2c0be9225b7f5dc07531cd
ubi8/php-80@sha256:bbf4c2cbfde05d7aad8a7720a6a09aba65b4a7c0ff6924be5b50a884a0d2b716
rhel8/php-80@sha256:bbf4c2cbfde05d7aad8a7720a6a09aba65b4a7c0ff6924be5b50a884a0d2b716
rhel8/php-82@sha256:c8858eaf9f4232bc289b50f42423e3927e2edc8054708a55feb5185620303371
ubi8/php-82@sha256:c8858eaf9f4232bc289b50f42423e3927e2edc8054708a55feb5185620303371
rhel8/python-311@sha256:942727592471bd0032689e583b25277753dedd646776500b02a15e2db2610d6d
ubi8/python-311@sha256:942727592471bd0032689e583b25277753dedd646776500b02a15e2db2610d6d
rhel8/python-312@sha256:efe25370a486c3a5b8207aff08d435ec92f0bb9e70dea6a930a0ce5d311f04ad
ubi8/python-312@sha256:efe25370a486c3a5b8207aff08d435ec92f0bb9e70dea6a930a0ce5d311f04ad
rhel8/python-36@sha256:7571f631089fcfdb550c318c476751ba7a1693440cb9f394be1fba65c93bc94d
ubi8/python-36@sha256:7571f631089fcfdb550c318c476751ba7a1693440cb9f394be1fba65c93bc94d
ubi8/python-39@sha256:8be091c81fc2c5c47582f10a6a3ca595212dd30393fb97c273c0f6bfd18076db
rhel8/python-39@sha256:8be091c81fc2c5c47582f10a6a3ca595212dd30393fb97c273c0f6bfd18076db
ubi8/ruby-25@sha256:7c2422fa4df2b150aa6afee31a008efee9f6107a25225c3da91ceea119b7b6a9
rhel8/ruby-25@sha256:7c2422fa4df2b150aa6afee31a008efee9f6107a25225c3da91ceea119b7b6a9
ubi8/ruby-31@sha256:21f96d9dbaf0a3ba8477624f4a85a38c49931151df694500860775e1933c0f79
rhel8/ruby-31@sha256:21f96d9dbaf0a3ba8477624f4a85a38c49931151df694500860775e1933c0f79
ubi8/ruby-33@sha256:7a5f0fdfaaf0861101094257939723e7775729213e42a7b1e1d5b4ed75d9fc9c
rhel8/ruby-33@sha256:7a5f0fdfaaf0861101094257939723e7775729213e42a7b1e1d5b4ed75d9fc9c
rhel8/s2i-base@sha256:2598c697ff03926d8e3a8244e7625913161434b1f5b624f00c0be640ac17380f
ubi8/s2i-base@sha256:2598c697ff03926d8e3a8244e7625913161434b1f5b624f00c0be640ac17380f

s390x

rhel8/nodejs-20@sha256:fa16be43ee3a3f5de014433f462c7eb4d97f687a7918a35b3dad51ae26fc407a
ubi8/nodejs-20@sha256:fa16be43ee3a3f5de014433f462c7eb4d97f687a7918a35b3dad51ae26fc407a
ubi8/nodejs-20-minimal@sha256:b2c10d7de1607ddaa5e3c174d4e3cf764b2f2aeb098dbd37c6182f27a16a82b5
rhel8/nodejs-20-minimal@sha256:b2c10d7de1607ddaa5e3c174d4e3cf764b2f2aeb098dbd37c6182f27a16a82b5
rhel8/perl-526@sha256:51f0e37a9b20ddd515b5aa3bb7a9d1834fd039daf9fb18fe633bcaad7f45687c
ubi8/perl-526@sha256:51f0e37a9b20ddd515b5aa3bb7a9d1834fd039daf9fb18fe633bcaad7f45687c
rhel8/perl-532@sha256:cb9bea0fd85ab4eb44863136c6ccf541868b1f1126400c78437f315c4e71398b
ubi8/perl-532@sha256:cb9bea0fd85ab4eb44863136c6ccf541868b1f1126400c78437f315c4e71398b
rhel8/php-74@sha256:dfc3729c9132f8247f456123ec2312666ceff6e7b7bb3f146e0e60261375303d
ubi8/php-74@sha256:dfc3729c9132f8247f456123ec2312666ceff6e7b7bb3f146e0e60261375303d
ubi8/php-80@sha256:d2b2a7130937df05104effe96a6690f0a5f66559e11c64a9cdb6c18403d6ecbb
rhel8/php-80@sha256:d2b2a7130937df05104effe96a6690f0a5f66559e11c64a9cdb6c18403d6ecbb
rhel8/php-82@sha256:5f86e9be1549251ef7a66089d02953b3ad2d4e9c9343851c431cc1015ccdc9de
ubi8/php-82@sha256:5f86e9be1549251ef7a66089d02953b3ad2d4e9c9343851c431cc1015ccdc9de
rhel8/python-311@sha256:acbc384d1d1f60b5e6c7ff7603801e42c596fa940578b963ca5812e0d767df84
ubi8/python-311@sha256:acbc384d1d1f60b5e6c7ff7603801e42c596fa940578b963ca5812e0d767df84
rhel8/python-312@sha256:6998d14b6cf6a4ca31b75a01335ab6489fcb4fc0ed0584a252fb4168d1e8cf70
ubi8/python-312@sha256:6998d14b6cf6a4ca31b75a01335ab6489fcb4fc0ed0584a252fb4168d1e8cf70
rhel8/python-36@sha256:e22fcf48002233b1ea3bbb2b5cb13aa6dddc138a097d0ec2fdc837612659cc9a
ubi8/python-36@sha256:e22fcf48002233b1ea3bbb2b5cb13aa6dddc138a097d0ec2fdc837612659cc9a
ubi8/python-39@sha256:de2d79c1685c470c326d04c14cdd77a927108b6a0744cacd38047df8f869154e
rhel8/python-39@sha256:de2d79c1685c470c326d04c14cdd77a927108b6a0744cacd38047df8f869154e
ubi8/ruby-25@sha256:b7006912360d186a08231cf84ef19c3fc4efac5b49127381b51ce4b9849f61a3
rhel8/ruby-25@sha256:b7006912360d186a08231cf84ef19c3fc4efac5b49127381b51ce4b9849f61a3
ubi8/ruby-31@sha256:d9d1d392442e3841bf494f4efa2fe55c3c7d944e293dcaedfe027f4e110a3847
rhel8/ruby-31@sha256:d9d1d392442e3841bf494f4efa2fe55c3c7d944e293dcaedfe027f4e110a3847
ubi8/ruby-33@sha256:01535da55ed5b4779f8cfcc54af0e32878fb537a2672209dce7541bd9ffe0555
rhel8/ruby-33@sha256:01535da55ed5b4779f8cfcc54af0e32878fb537a2672209dce7541bd9ffe0555
rhel8/s2i-base@sha256:8d1797edbed3d4aa305b95b388da94d4d2e82688c71610e877ae7d1beaae397e
ubi8/s2i-base@sha256:8d1797edbed3d4aa305b95b388da94d4d2e82688c71610e877ae7d1beaae397e

x86_64

rhel8/nodejs-20@sha256:0e26ad608e2c7e6675100b80706723e17d888e05fd9ccbee0982070156705ab6
ubi8/nodejs-20@sha256:0e26ad608e2c7e6675100b80706723e17d888e05fd9ccbee0982070156705ab6
ubi8/nodejs-20-minimal@sha256:b993c6945809947f3d45f88a547f021c142c096bbd8ffcb927743f0ca0883d4a
rhel8/nodejs-20-minimal@sha256:b993c6945809947f3d45f88a547f021c142c096bbd8ffcb927743f0ca0883d4a
rhel8/perl-526@sha256:07d825865f7bc96e04ea8e57740c02c6660ef71ee47ba4f736cd05110e426a55
ubi8/perl-526@sha256:07d825865f7bc96e04ea8e57740c02c6660ef71ee47ba4f736cd05110e426a55
rhel8/perl-532@sha256:67bc1f4e7701770097317968b9844923addbb79f3d0f2a7b819cb1421b1f30d7
ubi8/perl-532@sha256:67bc1f4e7701770097317968b9844923addbb79f3d0f2a7b819cb1421b1f30d7
rhel8/php-74@sha256:74f2bb134ed012be0ecac54515c3f03987b4923a57448736b68bd30a7a6d32eb
ubi8/php-74@sha256:74f2bb134ed012be0ecac54515c3f03987b4923a57448736b68bd30a7a6d32eb
ubi8/php-80@sha256:085ce638408a30696bf57ac6dde274ed6a15610a9051e39a0ae44b4085a3db94
rhel8/php-80@sha256:085ce638408a30696bf57ac6dde274ed6a15610a9051e39a0ae44b4085a3db94
rhel8/php-82@sha256:972e7c2527290237cb25446ffa5b32efc3e068ea2c4ac8882a99bbc228d196e5
ubi8/php-82@sha256:972e7c2527290237cb25446ffa5b32efc3e068ea2c4ac8882a99bbc228d196e5
rhel8/python-311@sha256:4f9a317736741fcc7444c6cbfee8dcb71d4980cdd2e624b8c6f0e1ccc8d2e838
ubi8/python-311@sha256:4f9a317736741fcc7444c6cbfee8dcb71d4980cdd2e624b8c6f0e1ccc8d2e838
rhel8/python-312@sha256:bd1001a7abdf21dbeebc7bf2f86b7b0e3fd1e2277f21c02a4b999ece34b1a9a7
ubi8/python-312@sha256:bd1001a7abdf21dbeebc7bf2f86b7b0e3fd1e2277f21c02a4b999ece34b1a9a7
rhel8/python-36@sha256:14423709d0db1171feba52336b0a866f7cac52f4f76600dfa0bb32f31c627d3f
ubi8/python-36@sha256:14423709d0db1171feba52336b0a866f7cac52f4f76600dfa0bb32f31c627d3f
ubi8/python-39@sha256:748f8481f150bb8c7e0e17e6b5e6469adae2b8bad449a21a72651b8c04434b30
rhel8/python-39@sha256:748f8481f150bb8c7e0e17e6b5e6469adae2b8bad449a21a72651b8c04434b30
ubi8/ruby-25@sha256:b008b7a3745e20d073508dbe144cc5d8a3bd3d217fa2d50af798ddeda7342441
rhel8/ruby-25@sha256:b008b7a3745e20d073508dbe144cc5d8a3bd3d217fa2d50af798ddeda7342441
ubi8/ruby-31@sha256:0e65543d082a3b7717e4b6dc2ff0a489583b83e6bfe972e594ac9933e7934df2
rhel8/ruby-31@sha256:0e65543d082a3b7717e4b6dc2ff0a489583b83e6bfe972e594ac9933e7934df2
ubi8/ruby-33@sha256:a80810c512d56bdbd635f1e94b3038346fa161ed0dab8d9071fcb13f22a26100
rhel8/ruby-33@sha256:a80810c512d56bdbd635f1e94b3038346fa161ed0dab8d9071fcb13f22a26100
rhel8/s2i-base@sha256:5448f59e0bc233da514290f171f712f6fe1f59cef9c8f9a2b81ad042a5eea9a4
ubi8/s2i-base@sha256:5448f59e0bc233da514290f171f712f6fe1f59cef9c8f9a2b81ad042a5eea9a4

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat X (formerly Twitter)

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat, Inc.

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility