Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2025:14874 - Bug Fix Advisory
Issued:
2025-08-28
Updated:
2025-08-28

RHBA-2025:14874 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated RHEL-8 based Middleware Containers container images

Type/Severity

Bug Fix Advisory

Topic

Updated RHEL-8 based Middleware Containers container images are now available

Description

The RHEL-8 based Middleware Containers container images have been updated to address the following security advisory: RHSA-2025:14560 (see References)

Users of RHEL-8 based Middleware Containers container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The RHEL-8 based Middleware Containers container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift Container Platform 4.12 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.11 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform for Power 4.10 for RHEL 8 ppc64le
  • Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.10 for RHEL 8 s390x
  • Red Hat OpenShift Container Platform for ARM 64 4.10 aarch64

Fixes

  • BZ - 2384043 - CVE-2025-8194 cpython: Cpython infinite loop when parsing a tarfile

CVEs

  • CVE-2025-8194

References

  • https://access.redhat.com/errata/RHSA-2025:14560
  • https://access.redhat.com/containers

aarch64

ubi8/openjdk-17@sha256:cb4efd48d9f234179775c36fbcfcec4938d87fc4801c434a7dcb066293e9b45a
ubi8/openjdk-17-runtime@sha256:86504ee20df04e075fbece18dea66258b3d6b0e16e9893bf8336f6abe513bc4f
ubi8/openjdk-21@sha256:c41617e28f727248b4fc4a68a9d240f3e698cf47b6b257e59590e12a960b0d92
ubi8/openjdk-21-runtime@sha256:09c42fcf10a7bc73ef15bb1cb964e4449cfa94d93eaad39dde7f50a22b488ba9
ubi8/openjdk-8@sha256:e4936063ba91c7a4f40715c6594b83cfe98a64b0ab5311ba96b70bf6f654252a
ubi8/openjdk-8-runtime@sha256:5b753d391430ab83380cb1c73183566713c27dc2751254ba4a1887073c1e8892

ppc64le

ubi8/openjdk-17@sha256:9db20e431d13888ee7bd3d50f7e0533d87af137bdd811a2c41a979a3dd410d71
ubi8/openjdk-17-runtime@sha256:981e20b278b325bcc4c25d1c31e069d7ac682646607a6c4158e1bfc6c04b5029
ubi8/openjdk-21@sha256:758c7b8c7ce2cb6ad4db17b45f5947c098d179fb94381e4704659363b3aed351
ubi8/openjdk-21-runtime@sha256:2d1be63073422bc0be7bfe7cee1094d3155d94cf52aaa6d21d7103ac157cb5dc
ubi8/openjdk-8@sha256:d4687867511c98b2dc38d32b9066904952508472ad7360c4b8bb6a0b19067c5f
ubi8/openjdk-8-runtime@sha256:aa38f02aa0be79c4dbbb48729ff8fde5d4ec38d4b00c91734237528e63c9097b

s390x

ubi8/openjdk-17@sha256:ee9223c3d5d624e9cf9c95393672a5c95665ca6c1a75cc00a9bf3c3463f41405
ubi8/openjdk-17-runtime@sha256:30f3d7e9c8cbdc9ac5ee21fba7411feac497e6092ccbc9c4100f7cae77107177
ubi8/openjdk-21@sha256:ee3c10244e0fd8705d57a4e61c027f54a83deb06ff66354c651f516aebe55151
ubi8/openjdk-21-runtime@sha256:53d844a43f7090ec30df91c4148bd70780c82fe4ac0175085f364150af723c13
ubi8/openjdk-8@sha256:ac461da0bc7b95bac00b8dc7bfa8ac4301b39f6fd934534c840a1df4b4aa6feb
ubi8/openjdk-8-runtime@sha256:932fc149977a5e1912c02202d945b34d698d33c537d040f20094dec150b4bb76

x86_64

ubi8/openjdk-17@sha256:6feb54f79c91b043955924ad635d1b014a60a6f7130383edc13b9cf21b5b0c02
ubi8/openjdk-17-runtime@sha256:5727f3a09fdc576f48259a6723a08ff4ac12d9c5d75576db3d4bc09f88f4e880
ubi8/openjdk-21@sha256:48038aa96772a970887cc8fe45f0bfd00e93afc35d95da91cd2bad7c7a9374e6
ubi8/openjdk-21-runtime@sha256:c6cfce7544c0f6d3f7a546698220aa460bf617d9a6cc355e0f0c4702939a0004
ubi8/openjdk-8@sha256:5e355a86260202fecd09643ba43a07a6ce21d0280267c3b366be52a2efecd449
ubi8/openjdk-8-runtime@sha256:1edba2136c9359e69bc1fe998598f6057ee244c3a83249de2651ca9fc0377eeb

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility