Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2024:7258 - Bug Fix Advisory
Issued:
2024-09-26
Updated:
2024-09-26

RHBA-2024:7258 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat OpenShift GitOps 1.12 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat OpenShift GitOps 1.12 container images are now available

Description

The Red Hat OpenShift GitOps 1.12 container images have been updated to address the following security advisory: RHSA-2024:5654 (see References)

Users of Red Hat OpenShift GitOps 1.12 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat OpenShift GitOps 1.12 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift GitOps 1.12 for RHEL 9 x86_64
  • Red Hat OpenShift GitOps 1.12 for RHEL 8 x86_64
  • Red Hat OpenShift GitOps for IBM Power, little endian 1.12 ppc64le
  • Red Hat OpenShift GitOps for IBM Z and LinuxONE 1.12 s390x
  • Red Hat OpenShift GitOps for ARM 64 1.12 for RHEL 9 aarch64
  • Red Hat OpenShift GitOps for ARM 64 1.12 for RHEL 8 aarch64

Fixes

  • BZ - 2270498 - CVE-2024-2398 curl: HTTP/2 push headers memory-leak

CVEs

  • CVE-2024-1737
  • CVE-2024-1975
  • CVE-2024-2398
  • CVE-2024-6345
  • CVE-2024-37370
  • CVE-2024-37371
  • CVE-2024-37891

References

  • https://access.redhat.com/errata/RHSA-2024:5654
  • https://access.redhat.com/containers

aarch64

openshift-gitops-1/argo-rollouts-rhel8@sha256:b97b33a603d0a2ea875392230bf93b4bfd76d6831288885c80d050517563d740
openshift-gitops-1/argocd-rhel8@sha256:f6331d0936832c59fdab570d2cc2c6b6c404ea9f1a8ba5b20905dea7fe8b75b5
openshift-gitops-1/console-plugin-rhel8@sha256:5931267d4b7360518386249f6b0a5eeb344250d06435290d15a54d1efeae2fbf
openshift-gitops-1/dex-rhel8@sha256:7a4f3e0413f913d9df0019a7da802c12ce0f13da93e1056adeebf5e5af94bfa2
openshift-gitops-1/gitops-rhel8@sha256:312f73ab174d5e918f3f764f2972d4b3d7703f79df21e5ec7c9383773bfbc365
openshift-gitops-1/gitops-rhel8-operator@sha256:3c734f5534e78140bb0eb0776c5b0a6b5d07f3807c2dd803eb5cffa657f63187
openshift-gitops-1/kam-delivery-rhel8@sha256:d5a7842f72d3004c3a0f027622e9d60b4231c7d86001178c5c5d737754f7c0a9

ppc64le

openshift-gitops-1/argo-rollouts-rhel8@sha256:3abebbdcc2871a1487e824f4cca8c472a7b077e9284a6cee173db8d26a8e7bfa
openshift-gitops-1/argocd-rhel8@sha256:b84e0e20621202188d0742e97c5fd34b1771257510fd031da34e58301703326f
openshift-gitops-1/console-plugin-rhel8@sha256:50fdf1fab762c4a8e2c35679b943573063a6f335f44ae6f4e2945a9fe78d5304
openshift-gitops-1/dex-rhel8@sha256:c44a8ce55b700542e9e16c42cf55a1ab3863a23d03a7544aa7e0da46807e0ec7
openshift-gitops-1/gitops-rhel8@sha256:0355dbb3926fda9a5c5e6ffb0645d6160d5ece58707a32d6887dbe9d2dad2af3
openshift-gitops-1/gitops-rhel8-operator@sha256:7cde67829015c77792734817bebae111aa4b5b14d6e0c6dc86e81d27c480c02e
openshift-gitops-1/kam-delivery-rhel8@sha256:b27f522c868d57c45ae49f3acd7b5428e39ee6f153964396072d4fbb106f4a08

s390x

openshift-gitops-1/argo-rollouts-rhel8@sha256:b18015878b515d3e174869332bfc13f79d77488adf7a854e94d5daf88132ff4c
openshift-gitops-1/argocd-rhel8@sha256:8dadc94487b307b9322615c77cac91db452afc4a97b4d6c845c7e3cc8723c51c
openshift-gitops-1/console-plugin-rhel8@sha256:7ff681f1d65f401ece9180d5320e244ac42a6f4dab1d50b725ed09b984744830
openshift-gitops-1/dex-rhel8@sha256:c0faf6de7ae8679ffb8fb012348878ea8511a462d46c1a6eb24f6aba94af2472
openshift-gitops-1/gitops-rhel8@sha256:fb9e608bd4987187998ca47172be0e5fbd89d775f65ab08c184fd7c86a8837b0
openshift-gitops-1/gitops-rhel8-operator@sha256:c8523271f9be4f80f3fb0cb9196df6b41721e2ec5a9a08265a96994d68e2bcd0
openshift-gitops-1/kam-delivery-rhel8@sha256:ce7951e688251e48aeb0d2b5c637b95a9c0aa8cdd7f07b52902aec90402cc636

x86_64

openshift-gitops-1/argo-rollouts-rhel8@sha256:df3cda6a8b9a6c0b0588fbba215c2adbf65f03bd88b6034adc142c60712d3e84
openshift-gitops-1/argocd-rhel8@sha256:1a8f376eed7e94769211ab9f7351ac3568e3301af2a6fa81264c70d63dc36ad0
openshift-gitops-1/console-plugin-rhel8@sha256:ed8acb06c101b3bab373160bc28de0ca01b28452bade0858f501680de7aa188d
openshift-gitops-1/dex-rhel8@sha256:987ef5f4a27ee4f9786fdb77e2619acf2934d58bfa98f8798fec31293af8346d
openshift-gitops-1/gitops-rhel8@sha256:a3672b174ab97343116512dd3b799abfd03de954d8c66bd98ee36925b0918c69
openshift-gitops-1/gitops-rhel8-operator@sha256:239eac34ac54dcc9adb05fc2a63f755374992a14af46afedaa0bee626733cb06
openshift-gitops-1/kam-delivery-rhel8@sha256:b933eccc86046cb41ee8714be1f917e42143a8a7901dd7a24a105e7477dbfe45

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility