Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2025:9837 - Bug Fix Advisory
Issued:
2025-06-26
Updated:
2025-06-26

RHBA-2025:9837 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated RHEL-8 based Middleware Containers container images

Type/Severity

Bug Fix Advisory

Topic

Updated RHEL-8 based Middleware Containers container images are now available

Description

The RHEL-8 based Middleware Containers container images have been updated to address the following security advisory: RHSA-2025:8958 (see References)

Users of RHEL-8 based Middleware Containers container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The RHEL-8 based Middleware Containers container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift Container Platform 4.12 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.11 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.10 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform for Power 4.10 for RHEL 8 ppc64le
  • Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.10 for RHEL 8 s390x
  • Red Hat OpenShift Container Platform for ARM 64 4.10 aarch64

Fixes

  • BZ - 2358121 - CVE-2025-32414 libxml2: Out-of-Bounds Read in libxml2

CVEs

  • CVE-2025-4802
  • CVE-2025-32414

References

  • https://access.redhat.com/errata/RHSA-2025:8958
  • https://access.redhat.com/containers

aarch64

ubi8/openjdk-17@sha256:02a789ba0e34afdfcdd2de3cafb2e552ad19c177937b62857d430fb719ef03d2
ubi8/openjdk-17-runtime@sha256:3e7bbfcf713a3ad60905966cf31f19a6a0c428eb13feec9f41898c7e9aa7bff9
ubi8/openjdk-21@sha256:cd214d3bb340be1137d70e97631dfe34f44c800d5c30afe36379bb4fae5c0094
ubi8/openjdk-21-runtime@sha256:c05422f90d2a915daec258f28d9f9c2abbfe5abbb8624c3f299a3ac6e0e266d3
ubi8/openjdk-8@sha256:04bc5c78b4edc9c7042ea1c636c885d243b4c4b3d49cb2e7df58cabb457a05ae
ubi8/openjdk-8-runtime@sha256:3338c195028c8621db1d13a06fa990054238506dfe371af606abb4ba62c7e722

ppc64le

ubi8/openjdk-17@sha256:e167114da77247a432c9ce41156f7f428759c69e354a6ecc25e4a56582cc7927
ubi8/openjdk-17-runtime@sha256:e7bb368ad64c7d78e86976a3e1b11da23e7696bc22261f5c308e9547338f2ebd
ubi8/openjdk-21@sha256:82b695213d624e27185a0db2429fe58af012f452ca988f37f637ed0e42030223
ubi8/openjdk-21-runtime@sha256:3798e6c4791ca80405eaff5a53235a814c15bd8fe2b1f756919b83ecac16f4f8
ubi8/openjdk-8@sha256:50bd6ec399741248cf76974808f4ca41ef638e7e0f73ff5abb9021382fbda78a
ubi8/openjdk-8-runtime@sha256:e0454ec418fb294665bfad76e84ad9f5696a043340ea19ef580ab6568aea8221

s390x

ubi8/openjdk-17@sha256:1697f761c9a1ebda068e050263f10cb04cf9eb9069b6d2eeb93379daa95a07ea
ubi8/openjdk-17-runtime@sha256:6c1b4dd9a9ded132bef1dab2693171def5a28828691838ee878d822e367f55d2
ubi8/openjdk-21@sha256:ca83b450ee4ace8c6e4606aac4102b52464b37f6805094a472c0a8a2ba6065fb
ubi8/openjdk-21-runtime@sha256:573c7cd7fd90698a6ae2d2bffca78b8d62f1138d4b37ab1b234984a2881c30e8
ubi8/openjdk-8@sha256:a36b261a9dd47b6bd5a8cd305869ef19d92fdf3fa73f189bd7a693c66c20bc57
ubi8/openjdk-8-runtime@sha256:fe1acd024b3e22983d3a86bc14f498efc83581ef30ebf7ba0963be4d9e390fc8

x86_64

ubi8/openjdk-17@sha256:3f803c50b93585304312c47d10b0410d402614d454e94f462d66d4a60d558c6d
ubi8/openjdk-17-runtime@sha256:05f3e41a55de51228388a53e8e7764f85363567ded9e17f7ade4c126cc10528b
ubi8/openjdk-21@sha256:4f18acf52c67423f07f5fbde990d686b167355aaf34f4be165252fd228b92176
ubi8/openjdk-21-runtime@sha256:51f84329e15a42b6c85051525b47e2ba5ddd1328135e2a278b7d0f6cb50b6036
ubi8/openjdk-8@sha256:e162b56fef89cdfbdfd2eac8711228b69a67a67aa8d93669a5381a4a134f8176
ubi8/openjdk-8-runtime@sha256:7780df157cc74c3dbee77cb978eb375d2e7ba9cd5fae7013cd629d6e0caca48e

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility