Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2026:0806 - Bug Fix Advisory
Issued:
2026-01-19
Updated:
2026-01-19

RHBA-2026:0806 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 8 container images

Type/Severity

Bug Fix Advisory

Topic

Updated Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 8 container images are now available

Description

The Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 8 container images have been updated to address the following security advisory: RHSA-2026:0728 (see References)

Users of Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 8 container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 8 container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • JBoss Enterprise Application Platform 7.4 ELS 7.4 for RHEL 8 x86_64

Fixes

  • BZ - 2425966 - CVE-2025-68973 GnuPG: GnuPG: Information disclosure and potential arbitrary code execution via out-of-bounds write

CVEs

  • CVE-2025-9230
  • CVE-2025-14523
  • CVE-2025-58436
  • CVE-2025-61915
  • CVE-2025-68973

References

  • https://access.redhat.com/errata/RHSA-2026:0728
  • https://access.redhat.com/containers

aarch64

jboss-eap-7/eap74-els-openjdk17-openshift-rhel8@sha256:c3a6fda3cbc26015b671b36d69b0061aa9de4ac330edde2d437211747bf4e68a
jboss-eap-7/eap74-els-openjdk17-runtime-openshift-rhel8@sha256:7d19bf1a358e6e2dbf211227ee3339e0ccf849f87c037a68a9e96e64e906eb14

ppc64le

jboss-eap-7/eap74-els-openjdk11-openshift-rhel8@sha256:004c84463e3fb0925d04ae1a633dcf4f50dc11552982805bbce04cb548a428de
jboss-eap-7/eap74-els-openjdk11-runtime-openshift-rhel8@sha256:d4776e0c8bef007ea1c8de3d8fd8ef644745ba8fd3f2296c7c26204f3594776d
jboss-eap-7/eap74-els-openjdk17-openshift-rhel8@sha256:c684a6dd56323d7155cfde40c33cdd558c9cadb8da3ce836c4400d648f76af6e
jboss-eap-7/eap74-els-openjdk17-runtime-openshift-rhel8@sha256:3eca804b9d06177bc56189957a208c722629753c9d6c3e7d83205509241bf76b

s390x

jboss-eap-7/eap74-els-openjdk11-openshift-rhel8@sha256:a28d14fbcdb54cc732d08f85dd5f388c9532c5b1b849a06fb30dcc106320b2e1
jboss-eap-7/eap74-els-openjdk11-runtime-openshift-rhel8@sha256:e1356e0a0b35ff84971e6407933705c1f01d31fd083a3798a6a98b64907fdf7f
jboss-eap-7/eap74-els-openjdk17-openshift-rhel8@sha256:29426c7fd7d79624fb70b10d4ca198b8b615efe83a6702c38ecfec044be288c0
jboss-eap-7/eap74-els-openjdk17-runtime-openshift-rhel8@sha256:ecc99640b07460f50fde67e1956b643e2e2b244f5bb297545a3714210b7e998d

x86_64

jboss-eap-7/eap74-els-openjdk11-openshift-rhel8@sha256:b5d75fc3efcf321c03045c1f0079bf4c1df19666a9375c178c53223b5fe31be7
jboss-eap-7/eap74-els-openjdk11-runtime-openshift-rhel8@sha256:d4f81ce5c2d21884e0a3d5707f88ae68d20f95922a6a21015e750530df02a743
jboss-eap-7/eap74-els-openjdk17-openshift-rhel8@sha256:9e90652fc4665bb0ffc5ff505810257a644d577a53662a5facc81fe2932af757
jboss-eap-7/eap74-els-openjdk17-runtime-openshift-rhel8@sha256:a5243474cda35c348325b6c9007b538eea935a868973c51dfd15e73282fdc57e
jboss-eap-7/eap74-els-openjdk8-openshift-rhel8@sha256:e58e03e509901eb275c1cc74d5aa75e40d386b1b5645887b9d1f2daa8be211d1
jboss-eap-7/eap74-els-openjdk8-runtime-openshift-rhel8@sha256:6aca62dbfc2d7d7b5c296c7e85747cd41efd4de40d083c2c1ff202ed62b56e6d

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility