Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2025:8617 - Bug Fix Advisory
Issued:
2025-06-05
Updated:
2025-06-05

RHBA-2025:8617 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated RHEL-8 based Middleware Containers container images

Type/Severity

Bug Fix Advisory

Topic

Updated RHEL-8 based Middleware Containers container images are now available

Description

The RHEL-8 based Middleware Containers container images have been updated to address the following security advisory: RHSA-2025:8411 (see References)

Users of RHEL-8 based Middleware Containers container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The RHEL-8 based Middleware Containers container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift Container Platform 4.12 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.11 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.10 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform for Power 4.10 for RHEL 8 ppc64le
  • Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.10 for RHEL 8 s390x
  • Red Hat OpenShift Container Platform for ARM 64 4.10 aarch64

Fixes

  • BZ - 2359465 - CVE-2025-3576 krb5: Kerberos RC4-HMAC-MD5 Checksum Vulnerability Enabling Message Spoofing via MD5 Collisions

CVEs

  • CVE-2016-9840
  • CVE-2024-12133
  • CVE-2024-12243
  • CVE-2025-3576

References

  • https://access.redhat.com/errata/RHSA-2025:8411
  • https://access.redhat.com/containers

aarch64

ubi8/openjdk-17@sha256:c14a5d59f208c74592e040362946f03949a52e4d8a9f0b77536b3e7cf129369f
ubi8/openjdk-17-runtime@sha256:b41ad4b954cad85f7db23fe0f537c2fc3c50a938ef44fc1aacd91d32cb6f84ca
ubi8/openjdk-21@sha256:9876f2da1ff1f6bcac617dcddda8c5e64cd1f342c3de0d30c7240cc2cdf5c95b
ubi8/openjdk-21-runtime@sha256:a607edd510097bfd605c5bcb00354517daabeed675e03b484cf8b868ef9f2f89
ubi8/openjdk-8@sha256:f14f6c5c6467e69fc1873fd738c9ce6befc2ee1dde7b074c624a3261f5783346
ubi8/openjdk-8-runtime@sha256:666190ba3fbd6860ac7f1ef8e0a461eaa3e14850678084aefd90c46e44ecbe00

ppc64le

ubi8/openjdk-17@sha256:626f74863a6496ed7fe855065e00a7b2c6689ce7ea6dbd24e4cdcaa08b0ae5f4
ubi8/openjdk-17-runtime@sha256:6abc67e952e44e9b185e98cd72b5a2ca1411fde083ff2c1ebc9c890f6e6816e2
ubi8/openjdk-21@sha256:56b362195a08a987e48ab05d540ac91cfb70d6a989109a024dcedfa820d2703a
ubi8/openjdk-21-runtime@sha256:94af148892a8d341c7329353ba24d0506befe7dff40a7eb552db60d61e32eba9
ubi8/openjdk-8@sha256:5abb16c0a977471119bee8ff233cf91addc020b61c7bd8f5ffc8ff6deaf1cc23
ubi8/openjdk-8-runtime@sha256:12a1d4f3b531059568715e6879fd24282877eb0986e6f06452124ad075322861

s390x

ubi8/openjdk-17@sha256:629afc1c5de3837a895b733ed301acf8874d7888a733658b0234befb9bb180c2
ubi8/openjdk-17-runtime@sha256:65a60792a995e915342226e556061d04dff0e911c1e1b8722a9d7e9ed3b1ba09
ubi8/openjdk-21@sha256:910f8052b301f8c3fd9db4275b9892e88ce7cf50d82fbd95ed98a6c20e0b2f3a
ubi8/openjdk-21-runtime@sha256:3f75ba8c6b870f9d9b815403b34a792694fd398c048c713cb1ef90e1d070c706
ubi8/openjdk-8@sha256:1b4f6919c568127ea9799926c720bf617253ef326a0e50d8c692142ff37bfbaf
ubi8/openjdk-8-runtime@sha256:2bbf39233d73213d674aac03e196662e2d3d19ee5e0fc244a6ff704ca2820b5b

x86_64

ubi8/openjdk-17@sha256:05fd4f643d8576477f1b070f513d3a766dd3736f278ad2f8dfc51bbf21bbe517
ubi8/openjdk-17-runtime@sha256:3e773547b652875f04373621e4bf4f886f1b230edfa2d87b89a0008243854284
ubi8/openjdk-21@sha256:88c84b3d1ed895aec43bb6816c9ace34733c154abdbc3dc5d09e364186eb1dba
ubi8/openjdk-21-runtime@sha256:abf5900553cc21ea3c3dcf202ca9c32c42dc14d09e46390c34b28dfff46f5e79
ubi8/openjdk-8@sha256:2daa5b3729a18da8f68ee7a29f52e76e03c76e72a180cf1595ab12a34401b318
ubi8/openjdk-8-runtime@sha256:78c8dd1fdbc258b1e9ba1fa420d34feef83bc6ce2b631644ab58939518b3b125

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility