Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2026:13570 - Bug Fix Advisory
Issued:
2026-05-04
Updated:
2026-05-04

RHBA-2026:13570 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated RHEL-8 based Middleware Containers container images

Type/Severity

Bug Fix Advisory

Topic

Updated RHEL-8 based Middleware Containers container images are now available

Description

The RHEL-8 based Middleware Containers container images have been updated to address the following security advisory: RHSA-2026:11349 (see References)

Users of RHEL-8 based Middleware Containers container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The RHEL-8 based Middleware Containers container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift Container Platform 4.12 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.11 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.10 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform for Power 4.10 for RHEL 8 ppc64le
  • Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.10 for RHEL 8 s390x
  • Red Hat OpenShift Container Platform for ARM 64 4.10 aarch64

Fixes

  • BZ - 2392605 - CVE-2025-9714 libxslt: libxml2: Inifinite recursion at exsltDynMapFunction function in libexslt/dynamic.c

CVEs

  • CVE-2025-9714
  • CVE-2026-4786
  • CVE-2026-6100

References

  • https://access.redhat.com/errata/RHSA-2026:11349
  • https://access.redhat.com/containers

aarch64

ubi8/openjdk-17@sha256:f39d49f93ebaab783c80e6b03f6a6a2d35cfd350c42655a1acdd4d1cd2c25827
ubi8/openjdk-17-runtime@sha256:d9c273d8e177f3488487aed3243f4d5389a6d3464df7a1ec470f54cc0896d036
ubi8/openjdk-21@sha256:d896f9c4af7e08b04c867ce638225e6a2111ab95cfa95b2537bd350972d04e59
ubi8/openjdk-21-runtime@sha256:603d9a2cd3254986b7436c3a637e0e3b751d6c0e35988f0b7bee5129d435c8da
ubi8/openjdk-8@sha256:fc966294324b4063bf7ea029c3851d416025802a9e3eefb7fcae929b63286254
ubi8/openjdk-8-runtime@sha256:d1ad40e04653d0e650c487c430bb5efc753cbec647d2697feea9e8bf9e621b29

ppc64le

ubi8/openjdk-17@sha256:a5a3afc332cf502bacfe0871343dd4fb41488f28cabb9b4dc545eaed48fcfb35
ubi8/openjdk-17-runtime@sha256:60d268d5f1f35fa2f86a70ebaa42b281150a0311d55775e1697c8188166e1d30
ubi8/openjdk-21@sha256:7d1dcc4a10bf716efe8dafa89eef66ead451d3efcc17e7879c640d6545db29c2
ubi8/openjdk-21-runtime@sha256:348833fe6dafa29790ef14b4459b9b89ed7339d8cd31709e156e8c96b55eb75b
ubi8/openjdk-8@sha256:d692b89588bd283a6bcb06fc3c1cc053834bb7aff96e2be9c869d3ded4c86726
ubi8/openjdk-8-runtime@sha256:f6869830a19c7a2c5ab0c8addcac45ca4c256043e57ad11a12585f1497f6f41a

s390x

ubi8/openjdk-17@sha256:2739a98b083a60296b2fab9870a855bb9e40ca951f85d00606d131d2a7e189e4
ubi8/openjdk-17-runtime@sha256:fb00f4a42da6557a14d0bdf887d09ad039c1abe34227b45b004bbffd737b3ae7
ubi8/openjdk-21@sha256:c03345c8e5ad68111b3793e9be32bbf85404023d202a2dc0c5210efc9620aa90
ubi8/openjdk-21-runtime@sha256:cece9403c46c6f73651277b527350aea03b8b08d7a8dfafd25b64d52c74add74
ubi8/openjdk-8@sha256:3550b28faf46d4998bdbb7e887bdd56424a04f740dc9090799f14c9896039e62
ubi8/openjdk-8-runtime@sha256:9c957d281ea1a83e94ef8517e33896e6e1becc8c4f4048d2f2dc87d2988352c6

x86_64

ubi8/openjdk-17@sha256:0b2f4f004cf441cd9f24f7670f30963e08c218c1c23bbfaa402743736ea39eb4
ubi8/openjdk-17-runtime@sha256:b571dc75d47fbf1173131de372bb31a38b9eec803b2221a481d6f3405d033474
ubi8/openjdk-21@sha256:cb20c2710fd562a1157c7e15971863d55627e4a6e01d5d989a21874fcc894330
ubi8/openjdk-21-runtime@sha256:d8c27c3487b28fb7b275aee8865ff41d3440a5bb15d3c2aeffdb24d3557cc420
ubi8/openjdk-8@sha256:33a88fb74054508ae410be7536d0da0f5c3455804dde5132e90f594bf5adbbe6
ubi8/openjdk-8-runtime@sha256:106e86f3a77b13bba8eceeb8472228f8839aa2b84701354de238e3d0f49fb1b5

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility