Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2026:16690 - Bug Fix Advisory
Issued:
2026-05-13
Updated:
2026-05-13

RHBA-2026:16690 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated RHEL-9 based Middleware Containers container images

Type/Severity

Bug Fix Advisory

Topic

Updated RHEL-9 based Middleware Containers container images are now available

Description

The RHEL-9 based Middleware Containers container images have been updated to address the following security advisory: RHSA-2026:15971 (see References)

Users of RHEL-9 based Middleware Containers container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The RHEL-9 based Middleware Containers container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat JBoss Middleware 1 x86_64

Fixes

  • BZ - 2419093 - CVE-2025-14087 glib: GLib: Buffer underflow in GVariant parser leads to heap corruption
  • BZ - 2421339 - CVE-2025-14512 glib: Integer Overflow in GLib GIO Attribute Escaping Causes Heap Buffer Overflow

CVEs

  • CVE-2025-14087
  • CVE-2025-14512
  • CVE-2026-33636

References

  • https://access.redhat.com/errata/RHSA-2026:15971
  • https://access.redhat.com/containers

aarch64

openjdk-tech-preview/openjdk-21-jlink-rhel9@sha256:44199f896576bc3b54e65b38edf58a9790a7477f4008c7a59168c7db4ea6ab77
ubi9/openjdk-17@sha256:802befa9a77a7feea3da8cf7ee0b5c2a2c44c9d79a0da65bc8c9cb9cc460d823
ubi9/openjdk-17-runtime@sha256:7ffdbeec2acf5b03f83007dce6745416a62c2cbdceeb5675d5e729b1158bd985
ubi9/openjdk-21@sha256:1a137884c7ebbb4ed0d3152133505d58cbd420a3dfb0c0b7a7d6998da12ce56f
ubi9/openjdk-21-runtime@sha256:02a1b9f5812410fb25a5a5ffda4c9e3fee6f2288b966acbbd135b20bf8f29c21
ubi9/openjdk-25@sha256:b9bd09c74f8c2a01b6e585c6fd21dc4a0e3e2eaf04bf75b3417cd1e164fc6b1e
ubi9/openjdk-25-runtime@sha256:f0c62d49aad4187de66c71d820fd5fe2ffa3c10ad9b2cddfb905d3faa371f826

ppc64le

openjdk-tech-preview/openjdk-21-jlink-rhel9@sha256:4eeb62a078ba1314705ab75f200d37f18c677259b7d50c188e51dade2dbecf51
ubi9/openjdk-17@sha256:c4d24a55c82c120552b8fb4bc5b3e57a94d7dca0a9fddbc400e23d4817cffd71
ubi9/openjdk-17-runtime@sha256:757c35ca2f3b1e3172a0131165cf3aef42c72e3e26fa75aecbfdf36ef947f582
ubi9/openjdk-21@sha256:c1b086eb65d22694a5de37af1600a985203e026405d48a71587bba3cbef1b47b
ubi9/openjdk-21-runtime@sha256:cf1ba162204dba6da795351f9a02e0af9e425c40abb51fad327a9565d9413e5f
ubi9/openjdk-25@sha256:98a98d4ac947b72a9303fe0e9176daa0ff98082de5c83774660154fb3c4a5d0d
ubi9/openjdk-25-runtime@sha256:2ec7890489200d82cbd9b17fe155623d940e7fb21c0087253753705a554cb64c

s390x

openjdk-tech-preview/openjdk-21-jlink-rhel9@sha256:e6742ea804317e3886c73e57f31db416fddc0c2fae0fe7f9783e636c0868947a
ubi9/openjdk-17@sha256:5ebe30e7117d7a1a69938df606c59c6405eba45a52299ef8f5d9b16ba0e65806
ubi9/openjdk-17-runtime@sha256:3298935d40b7289e441354c9322954d2cb1052a14d4916a5df821adbe70a4011
ubi9/openjdk-21@sha256:10099a24bf6a9c5cab9c0a3b41c37f19e6e28eee497ff1abeaf9a6a09b749c62
ubi9/openjdk-21-runtime@sha256:e7fd43eda686c5cd2cc095e18503457d2207073ac1b7507e8cf0613a1c950f51
ubi9/openjdk-25@sha256:3a971ec388c393ca0c421e1f48eec9f969dfc4ce39b6aafe82420ccfb0321b99
ubi9/openjdk-25-runtime@sha256:f2c870ede42d6f54b7e32b6a438a2c28b538ae6979251ef86c8e5f8d2393e2fc

x86_64

openjdk-tech-preview/openjdk-21-jlink-rhel9@sha256:5bd2142e2cab2a837140bc885487567eb132e0a210bb98cf3df1a8ed9d5d9b94
ubi9/openjdk-17@sha256:a03934f75b89b7b1dde304b9f4f04c34285caede4fb6708e3721bfda4d2afbc6
ubi9/openjdk-17-runtime@sha256:a12c6bad88932de3a641fbc3b741954f58186900082c5e672ba91b56374a56fb
ubi9/openjdk-21@sha256:5a2a5eeba188904fb754df4ab27d6be9840f5938ae6cbf1f1b62104d78accf82
ubi9/openjdk-21-runtime@sha256:e6304e1bdcb7752971492288f45883d46769caba19e47afc0416acbcec22a301
ubi9/openjdk-25@sha256:13ca3fec0e3c3f32b10e54df313b23ce3040846eb28c014b5863b9edf00c2bf5
ubi9/openjdk-25-runtime@sha256:9704c8249a05275ecc21be675817ce7391e9af8af1486899ff68fc290b63f59b

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility