- Issued:
- 2026-04-23
- Updated:
- 2026-04-23
RHBA-2026:10282 - Bug Fix Advisory
Synopsis
Updated rhtas/ec-rhel9 container image
Type/Severity
Bug Fix Advisory
Topic
An updated rhtas/ec-rhel9 container image is now available in the Red Hat container registry.
Description
Conforma (formerly Enterprise Contract) is an artifact verifier and policy checker for use in supply chain CI/CD systems. It produces detailed, readable policy violation reports for container images based on the secure provenance attestations created at build time, using configurable policies defined in Rego.
Use it to gate releases or promotions between environments based on your business, quality, and security policies. Conforma is ideally suited for use with Tekton and Tekton Chains, but it is a system-agnostic command line tool that can be used in any CI environment.
Solution
The container image provided by this update can be downloaded from the Red Hat container registry at registry.redhat.io/rhtas/ec-rhel9 using the "podman pull" command.
For more information about this image, search for rhtas/ec-rhel9 in the Red Hat Ecosystem Catalog at https://catalog.redhat.com/
Affected Products
- Red Hat Trusted Artifact Signer (RHTAS)
Fixes
(none)CVEs
(none)
amd64
| registry.redhat.io/rhtas/ec-rhel9@sha256:a3a922ea7cc9d2201aa5526bf779d8d4d68921572b18ed36df3c5581ade59d84 |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.