Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2025:19483 - Bug Fix Advisory
Issued:
2025-11-03
Updated:
2025-11-03

RHBA-2025:19483 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Cryostat 4 on RHEL 9 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Cryostat 4 on RHEL 9 container images are now available

Description

The Cryostat 4 on RHEL 9 container images have been updated to address the following security advisory: RHSA-2025:17742 (see References)

Users of Cryostat 4 on RHEL 9 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Cryostat 4 on RHEL 9 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Cryostat 4 x86_64

Fixes

  • BZ - 2380360 - CVE-2025-53906 vim: Vim path traversal
  • BZ - 2380362 - CVE-2025-53905 vim: Vim path traversial

CVEs

  • CVE-2025-53057
  • CVE-2025-53066
  • CVE-2025-53905
  • CVE-2025-53906
  • CVE-2025-61748

References

  • https://access.redhat.com/errata/RHSA-2025:17742
  • https://access.redhat.com/containers

aarch64

cryostat/cryostat-agent-init-rhel9@sha256:9f2573b0a643247d632b1d7e0ca3fe2a73cdca82235d54680bfd40a8919be262
cryostat/cryostat-db-rhel9@sha256:08aac5537db5d37b1e6a5f9edb12ee327e3a25b0d80900cff85a8f08b905ff71
cryostat/cryostat-grafana-dashboard-rhel9@sha256:869e65fadae9a1959100ce28b00cdb2ba51f8f2b77305fbc29b175647a1e2b22
cryostat/cryostat-openshift-console-plugin-rhel9@sha256:5b625d75a1507d855fdd2f54e2dd884cbaacb1fbfedca8fbdd6556c4631281a4
cryostat/cryostat-operator-bundle@sha256:0fad91b348cd8f16ae2e0d3c2b00c55f37ec722dd97892cf26110a27f472475b
cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:68c3daf8cfa3065e9f4c724310a588652ce5b832ae601f3fac1a2617f51cf68f
cryostat/cryostat-reports-rhel9@sha256:4b67513721490490cb68e6c410370edeab03b92f7e74b622064adf9a9fa3fc05
cryostat/cryostat-rhel9@sha256:d4c4adb474045def1a972ab7186227db14b7a01bfc3f28fee8d23ca18651ba34
cryostat/cryostat-rhel9-operator@sha256:56e657264e91c6cd08c1354a74e2581b6eb81c77aa0765a1924a7cbb13b823fe
cryostat/cryostat-storage-rhel9@sha256:ae65d72125dd91d9cb7ae9c7fc4f035b7b5f7977143e380c760e8c5a1f8f33d1
cryostat/jfr-datasource-rhel9@sha256:7bf03afc6fcbfac72dc58d803c6797dc1a0652b197e44bb0ba56614f8f77aa60

x86_64

cryostat/cryostat-agent-init-rhel9@sha256:8be4bf17463023bc5de35bfd6b67aecf6c5cb615bf67da86bc85720c86dc882a
cryostat/cryostat-db-rhel9@sha256:74e866963838a35e8fc91c2f7348eafe4ead99281c19e62c0dd4dd6c47945005
cryostat/cryostat-grafana-dashboard-rhel9@sha256:b089dfcc9625b52e3d448784167f6e6de5e5a073cd3a1b5cbcd0df5a13043071
cryostat/cryostat-openshift-console-plugin-rhel9@sha256:5b9fa9d7d59387773a995191b0c1e59e510ee45e9010a52247d98f5394a1a24f
cryostat/cryostat-operator-bundle@sha256:e2b8a6b635e607d1eed8e0eb5d4aa6bd09a9bd09f657d78ab0c0eb59ea05cee9
cryostat/cryostat-ose-oauth-proxy-rhel9@sha256:bd81d97ef514f721b5a18d9bb466abbcceef1a3bf424e69056c601f6fd9bac94
cryostat/cryostat-reports-rhel9@sha256:1883ff2425dba0585610a38f6630cd6be3129c386c3dbec15c21766b025ba8f9
cryostat/cryostat-rhel9@sha256:0b01f2f9c1b1b5ca678d217f02e5cd7b06fffd4b87677451218457736f1b7f89
cryostat/cryostat-rhel9-operator@sha256:bf23606d1c96db58690b8edb1c46171c324a2dcd7da48b2a22f244354efa70b2
cryostat/cryostat-storage-rhel9@sha256:1ea386d2ea17e94db4f0ff6c2c7a6f0e88b43ba20e46143733e7585393afaa91
cryostat/jfr-datasource-rhel9@sha256:6875d4ac38413abb83f7605492f78502b86d1ced753aa96a356b44496727b54f

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility