Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2024:8578 - Bug Fix Advisory
Issued:
2024-10-29
Updated:
2024-10-29

RHBA-2024:8578 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat Enterprise Linux 9 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat Enterprise Linux 9 container images are now available

Description

The Red Hat Enterprise Linux 9 container images have been updated to address the following security advisory: RHSA-2024:8162 (see References)

Users of Red Hat Enterprise Linux 9 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat Enterprise Linux 9 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat Enterprise Linux for x86_64 9 x86_64
  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.6 x86_64
  • Red Hat Enterprise Linux Server - AUS 9.6 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 9 s390x
  • Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.6 s390x
  • Red Hat Enterprise Linux for Power, little endian 9 ppc64le
  • Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.6 ppc64le
  • Red Hat Enterprise Linux for ARM 64 9 aarch64
  • Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.6 aarch64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.6 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.6 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.6 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.6 s390x

Fixes

  • BZ - 2270700 - CVE-2023-28746 kernel: Local information disclosure on Intel(R) Atom(R) processors
  • BZ - 2281127 - CVE-2024-27403 kernel: netfilter: nft_flow_offload: reset dst in route object after setting up flow
  • BZ - 2281149 - CVE-2023-52658 kernel: Revert "net/mlx5: Block entering switchdev mode with ns inconsistency"
  • BZ - 2281847 - CVE-2024-35989 kernel: dmaengine: idxd: Fix oops during rmmod on single-CPU platforms
  • BZ - 2282355 - CVE-2021-47385 kernel: hwmon: (w83792d) Fix NULL pointer dereference by removing unnecessary structure field
  • BZ - 2284571 - CVE-2024-36889 kernel: mptcp: ensure snd_nxt is properly initialized on connect
  • BZ - 2293078 - CVE-2024-36978 kernel: net: sched: sch_multiq: fix possible OOB write in multiq_tune()
  • BZ - 2293443 - CVE-2024-38556 kernel: net/mlx5: Add a timeout to acquire the command queue semaphore
  • BZ - 2295921 - CVE-2024-39483 kernel: KVM: SVM: WARN on vNMI + NMI window iff NMIs are outright masked
  • BZ - 2297474 - CVE-2024-39502 kernel: ionic: fix use after netif_napi_del()
  • BZ - 2297543 - CVE-2024-40959 kernel: xfrm6: check ip6_dst_idev() return value in xfrm6_get_saddr()
  • BZ - 2300517 - CVE-2024-42079 kernel: gfs2: Fix NULL pointer dereference in gfs2_log_flush

CVEs

  • CVE-2021-47385
  • CVE-2023-28746
  • CVE-2023-52658
  • CVE-2024-6232
  • CVE-2024-27403
  • CVE-2024-35989
  • CVE-2024-36889
  • CVE-2024-36978
  • CVE-2024-38556
  • CVE-2024-39483
  • CVE-2024-39502
  • CVE-2024-40959
  • CVE-2024-42079
  • CVE-2024-42272
  • CVE-2024-42284

References

  • https://access.redhat.com/errata/RHSA-2024:8162
  • https://access.redhat.com/containers

aarch64

rhel9/nodejs-18@sha256:6a2ce86843cd069545e6065c4bc31453a4a6446f3ad8438fe20ba25ed1a99ed8
ubi9/nodejs-18@sha256:6a2ce86843cd069545e6065c4bc31453a4a6446f3ad8438fe20ba25ed1a99ed8
rhel9/nodejs-20@sha256:ce8920d8cbc5833ed782b6f77f888b78c0b4ef96e2e43977ac803c8b44bb6c47
ubi9/nodejs-20@sha256:ce8920d8cbc5833ed782b6f77f888b78c0b4ef96e2e43977ac803c8b44bb6c47
ubi9/perl-532@sha256:51ed34c0a9e59fbc175e001490983ec8e6ff8f1eccbc86f6caf087e2ab08d8e6
rhel9/perl-532@sha256:51ed34c0a9e59fbc175e001490983ec8e6ff8f1eccbc86f6caf087e2ab08d8e6
rhel9/php-80@sha256:46e33b4dec5a39bbaff057e954ab5b9d8a6f03034c96c880787d31453de41d14
ubi9/php-80@sha256:46e33b4dec5a39bbaff057e954ab5b9d8a6f03034c96c880787d31453de41d14
rhel9/php-81@sha256:b2d1c7aadfab21647effeb1ec115323cdabeb09c0abb675bb7e86796642e6582
ubi9/php-81@sha256:b2d1c7aadfab21647effeb1ec115323cdabeb09c0abb675bb7e86796642e6582
rhel9/php-82@sha256:c85b0251fff4a3a7a0acc2b05b988d4140003a3030b2f54742dc5bc4a503d327
ubi9/php-82@sha256:c85b0251fff4a3a7a0acc2b05b988d4140003a3030b2f54742dc5bc4a503d327
rhel9/python-311@sha256:81ffc4034e8ffadbfdf2c8e455bb1c2e40e6afed11681b2496791115697ce4fb
ubi9/python-311@sha256:81ffc4034e8ffadbfdf2c8e455bb1c2e40e6afed11681b2496791115697ce4fb
rhel9/python-312@sha256:22232c7a8a72c4da7c205fe49ac2cd9d0aa6e68b1d0fcb38453d53eb752979f6
ubi9/python-312@sha256:22232c7a8a72c4da7c205fe49ac2cd9d0aa6e68b1d0fcb38453d53eb752979f6
ubi9/python-39@sha256:fa7725d029476e4571796b8adec4e799b70ac18dd6a2cf4eaca00df94e0a301a
rhel9/python-39@sha256:fa7725d029476e4571796b8adec4e799b70ac18dd6a2cf4eaca00df94e0a301a
ubi9/ruby-30@sha256:c756f528fbea37fdad7b39ef16b480d44036146fec00a4672733af70db61d248
rhel9/ruby-30@sha256:c756f528fbea37fdad7b39ef16b480d44036146fec00a4672733af70db61d248
ubi9/ruby-31@sha256:a270dda37ae5008db7b50d27f83d29dbe4a186f749ea30188e2fa60b4a63ba65
rhel9/ruby-31@sha256:a270dda37ae5008db7b50d27f83d29dbe4a186f749ea30188e2fa60b4a63ba65
rhel9/ruby-33@sha256:a3e65ae19f5298c03b4d1a5a212903b8365e037c4d144ff9bb37bd666dc58057
ubi9/ruby-33@sha256:a3e65ae19f5298c03b4d1a5a212903b8365e037c4d144ff9bb37bd666dc58057
rhel9/s2i-base@sha256:8d84b7d985b515efedeab37f03b309f2877cd5aa27def5d095169bda2f384c04
ubi9/s2i-base@sha256:8d84b7d985b515efedeab37f03b309f2877cd5aa27def5d095169bda2f384c04

ppc64le

rhel9/nodejs-18@sha256:5eb878d0d66b80e9a8d92954ba0e2221b61e884f5a31818873881f6ac7837b69
ubi9/nodejs-18@sha256:5eb878d0d66b80e9a8d92954ba0e2221b61e884f5a31818873881f6ac7837b69
rhel9/nodejs-20@sha256:eeb2cc0a74506e48b8422c5a04a1feb1d7f8cc754d77b6b6791a0c5791e87ed8
ubi9/nodejs-20@sha256:eeb2cc0a74506e48b8422c5a04a1feb1d7f8cc754d77b6b6791a0c5791e87ed8
ubi9/perl-532@sha256:cf24da5443185869e4f7134ef5c7f2340ff594db3d7575b321b6be670838ecc9
rhel9/perl-532@sha256:cf24da5443185869e4f7134ef5c7f2340ff594db3d7575b321b6be670838ecc9
rhel9/php-80@sha256:56f942cf46ae58745e975b539855cb3be61917deda9d52956c578b7847fe4a84
ubi9/php-80@sha256:56f942cf46ae58745e975b539855cb3be61917deda9d52956c578b7847fe4a84
rhel9/php-81@sha256:5deaad432187014d301077786c5618b076d71335a36de56c57da922d999f50be
ubi9/php-81@sha256:5deaad432187014d301077786c5618b076d71335a36de56c57da922d999f50be
rhel9/php-82@sha256:74188f162da075c349911d0ba257ab21151278d608a424494b241657fce06739
ubi9/php-82@sha256:74188f162da075c349911d0ba257ab21151278d608a424494b241657fce06739
rhel9/python-311@sha256:6af5f50d89e5a72a09d9a9e182b35bf139af808d401ce13bdbd50e338e927a82
ubi9/python-311@sha256:6af5f50d89e5a72a09d9a9e182b35bf139af808d401ce13bdbd50e338e927a82
rhel9/python-312@sha256:28758931378ca210bcf12ad4dd79572406b4a675c50a282f2cb3b80458a565ef
ubi9/python-312@sha256:28758931378ca210bcf12ad4dd79572406b4a675c50a282f2cb3b80458a565ef
ubi9/python-39@sha256:c80c01721216be31f14484706c0b8d0444aaa19ba7675481980e3d61a2f8350a
rhel9/python-39@sha256:c80c01721216be31f14484706c0b8d0444aaa19ba7675481980e3d61a2f8350a
ubi9/ruby-30@sha256:2d8f8fc64b3c8b619c137ae8f5a2e322946b5b45f2dad8b07895e6ed1516d88b
rhel9/ruby-30@sha256:2d8f8fc64b3c8b619c137ae8f5a2e322946b5b45f2dad8b07895e6ed1516d88b
ubi9/ruby-31@sha256:834f8b02035295c87c8b2f09b25317abf1f738d644cf7d05d3debe2f3e1f91a6
rhel9/ruby-31@sha256:834f8b02035295c87c8b2f09b25317abf1f738d644cf7d05d3debe2f3e1f91a6
rhel9/ruby-33@sha256:02e8c8876816c336e564a33e53c14d2680fb9248a522eaa0723910c13721e5d8
ubi9/ruby-33@sha256:02e8c8876816c336e564a33e53c14d2680fb9248a522eaa0723910c13721e5d8
rhel9/s2i-base@sha256:aca405954db5cbb2eaa6f9e4bda1253adac5f52fbc8f832faf921147cf39387f
ubi9/s2i-base@sha256:aca405954db5cbb2eaa6f9e4bda1253adac5f52fbc8f832faf921147cf39387f

s390x

rhel9/nodejs-18@sha256:a22df6f9f77e5412e67e869b4a2f343c2be6c7930267d73fb753d28b7374995b
ubi9/nodejs-18@sha256:a22df6f9f77e5412e67e869b4a2f343c2be6c7930267d73fb753d28b7374995b
rhel9/nodejs-20@sha256:47c82bb54d9fad4685d851c67c6a3aa232c1bc7e06ff5b452e1bda8e01e7b775
ubi9/nodejs-20@sha256:47c82bb54d9fad4685d851c67c6a3aa232c1bc7e06ff5b452e1bda8e01e7b775
ubi9/perl-532@sha256:8fe0564881c270bd761740c6e05d1913e4a213e3da5a6fbe69e43961f3bd4096
rhel9/perl-532@sha256:8fe0564881c270bd761740c6e05d1913e4a213e3da5a6fbe69e43961f3bd4096
rhel9/php-80@sha256:3a4a60f4e41ec73c01ab44d4f0bbb893027fe161dcfd0f821548443bed99bc1d
ubi9/php-80@sha256:3a4a60f4e41ec73c01ab44d4f0bbb893027fe161dcfd0f821548443bed99bc1d
rhel9/php-81@sha256:7d17cf3d5bccdd7952c84a9d1ffab4382aa5ebf75a5ca23dd816ffca3c47a9d3
ubi9/php-81@sha256:7d17cf3d5bccdd7952c84a9d1ffab4382aa5ebf75a5ca23dd816ffca3c47a9d3
rhel9/php-82@sha256:cd71b893d167c0ac48d4c3f15c9bfee45e563392d5de0eaa8e2c61d185487ad1
ubi9/php-82@sha256:cd71b893d167c0ac48d4c3f15c9bfee45e563392d5de0eaa8e2c61d185487ad1
rhel9/python-311@sha256:ba3b8c1a030864a336a9d56c2c49e2e54c8f05149b71db9d60a0d345c1f8c071
ubi9/python-311@sha256:ba3b8c1a030864a336a9d56c2c49e2e54c8f05149b71db9d60a0d345c1f8c071
rhel9/python-312@sha256:77640b0c58065c1f48130ae9b75f5639c4f95b81fcc59b114e6c320fbdf1d1af
ubi9/python-312@sha256:77640b0c58065c1f48130ae9b75f5639c4f95b81fcc59b114e6c320fbdf1d1af
ubi9/python-39@sha256:3c5a1f6dc8b7366af5c8997e66b97901c87360519274805d9f8ec0d3a5604a3f
rhel9/python-39@sha256:3c5a1f6dc8b7366af5c8997e66b97901c87360519274805d9f8ec0d3a5604a3f
ubi9/ruby-30@sha256:f8828e35a349661aa98dd0ddab7c1e4fd189f49d35f5c9f4f2fb01794181e158
rhel9/ruby-30@sha256:f8828e35a349661aa98dd0ddab7c1e4fd189f49d35f5c9f4f2fb01794181e158
ubi9/ruby-31@sha256:d830525206b096d48308a46b3c3fc2f5ff41e2e338f3a0ce6b299eb5216f2eb1
rhel9/ruby-31@sha256:d830525206b096d48308a46b3c3fc2f5ff41e2e338f3a0ce6b299eb5216f2eb1
rhel9/ruby-33@sha256:899f9766857459ced4c6133926dfbb03ec8cac32324b34d92130372d63e90dfa
ubi9/ruby-33@sha256:899f9766857459ced4c6133926dfbb03ec8cac32324b34d92130372d63e90dfa
rhel9/s2i-base@sha256:3d02e21bc793b83618492d5a1872ec4c681bc50c78da939c4825197c758abd35
ubi9/s2i-base@sha256:3d02e21bc793b83618492d5a1872ec4c681bc50c78da939c4825197c758abd35

x86_64

rhel9/nodejs-18@sha256:e2ff676b707e3c7a1bbedaaaff1720ec1e7b247489bba1fce7727803518851cc
ubi9/nodejs-18@sha256:e2ff676b707e3c7a1bbedaaaff1720ec1e7b247489bba1fce7727803518851cc
rhel9/nodejs-20@sha256:95e3ba94f70338f714c085060cb22cf97c7609eb22081ab8d9c72e0ff57cd23a
ubi9/nodejs-20@sha256:95e3ba94f70338f714c085060cb22cf97c7609eb22081ab8d9c72e0ff57cd23a
ubi9/perl-532@sha256:47bd6a28248d765d632d59311f857864ac60dcee5aeaed2d0681e28a7307e600
rhel9/perl-532@sha256:47bd6a28248d765d632d59311f857864ac60dcee5aeaed2d0681e28a7307e600
rhel9/php-80@sha256:a1e87f0848d7f1a7092d6eadd810b66b28baf07708d96d6e0a4550fbfb3c4080
ubi9/php-80@sha256:a1e87f0848d7f1a7092d6eadd810b66b28baf07708d96d6e0a4550fbfb3c4080
rhel9/php-81@sha256:c8b561b3be697859f6e0ec28f281af0bd052fbb7bba8e7533bf7dc47eddd6038
ubi9/php-81@sha256:c8b561b3be697859f6e0ec28f281af0bd052fbb7bba8e7533bf7dc47eddd6038
rhel9/php-82@sha256:6c91c146539e2ac80212e1f1cbba6a22beff1f8cff20d5652ec851c704dfeba0
ubi9/php-82@sha256:6c91c146539e2ac80212e1f1cbba6a22beff1f8cff20d5652ec851c704dfeba0
rhel9/python-311@sha256:eb0fb88c34337344b4cb33d68a3c60587bd6a4b153164599afd1d610a9fc7160
ubi9/python-311@sha256:eb0fb88c34337344b4cb33d68a3c60587bd6a4b153164599afd1d610a9fc7160
rhel9/python-312@sha256:83096e4e6273efcf52a697e8c235544ebf379125c08173bbe0dbc26b73fe06cd
ubi9/python-312@sha256:83096e4e6273efcf52a697e8c235544ebf379125c08173bbe0dbc26b73fe06cd
ubi9/python-39@sha256:71430608a0b3cc0d2966e5c18e8e05ffdeaf5c35f9d5d85e8084efdef076e721
rhel9/python-39@sha256:71430608a0b3cc0d2966e5c18e8e05ffdeaf5c35f9d5d85e8084efdef076e721
ubi9/ruby-30@sha256:8f03a13012303ca655da7f4b383ccf6dc8afc50a4d3b2be2eb64bdbf32bc7741
rhel9/ruby-30@sha256:8f03a13012303ca655da7f4b383ccf6dc8afc50a4d3b2be2eb64bdbf32bc7741
ubi9/ruby-31@sha256:936c061c931dd3bc7f1a7227057b81211d6e47b3da3b76177310bd15bc62cf31
rhel9/ruby-31@sha256:936c061c931dd3bc7f1a7227057b81211d6e47b3da3b76177310bd15bc62cf31
rhel9/ruby-33@sha256:2872738f4b17251abd08420f833b81a023bd9007e12d21b356627356af02747d
ubi9/ruby-33@sha256:2872738f4b17251abd08420f833b81a023bd9007e12d21b356627356af02747d
rhel9/s2i-base@sha256:9bb6350093025e74b5a9bf6c89493faf488b845ba708c2fc57f6b9fe7c73842d
ubi9/s2i-base@sha256:9bb6350093025e74b5a9bf6c89493faf488b845ba708c2fc57f6b9fe7c73842d

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility