- Issued:
- 2026-02-04
- Updated:
- 2026-02-04
RHBA-2026:1923 - Bug Fix Advisory
Synopsis
Logging for Red Hat OpenShift - 6.4.2
Type/Severity
Bug Fix Advisory
Topic
Logging for Red Hat OpenShift - 6.4.2
Description
Red Hat OpenShift Logging 6.4.2 is a cluster-wide logging solution for OpenShift that collects and manages applications, infrastructure, and audit logs.
Solution
For OpenShift Container Platform 4.20 see the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this errata update:
For Red Hat OpenShift Logging 6.4, see the following instructions to apply this update:
https://docs.redhat.com/en/documentation/red_hat_openshift_logging/6.4
Affected Products
- Logging Subsystem for Red Hat OpenShift
Fixes
- LOG-7347 - Vector crashes with BufferTooSmall and enters repeated CrashLoopBackOff, causing high-impact log loss across the cluster (even with disk buffer enabled)
- LOG-7804 - Elasticsearch Custom Headers
- LOG-7896 - Add Sink Error alert
- LOG-8007 - Mark logType for azureMonitor output as required field in ClusterLogForwarder CRD
- LOG-8090 - Syslog format corruption occurs when newline characters (\n) are included in Eventrouter logs
- LOG-8091 - The `spec.egress[].ports[].port` of networkPolicy is set to `3100` when CLF has `spec.outputs[].loki.url: https://logs-prod3.grafana.net`
- LOG-8109 - When forwarding logs to http output via http proxy and enable RestrictIngressEgress network policy, the traffic to the http proxy is not allowed.
- LOG-8129 - CLO keeps updating the networkpolicy when there are multiple outputs/inputs.receiver in CLF.
- LOG-8130 - Vector metrics can't be scraped by prometheus when CLF has inputs.receiver and networkpolicy ruleSet is `RestrictIngressEgress`.
- LOG-8507 - [Logging 6.4.z] Fields kubernetes_container_name, kubernetes_namespace_name, kubernetes_pod_name not getting pruned for loki output
- LOG-8583 - [release-6.4] Increase the timeout between Distributor and Ingester
- LOG-8593 - Create runbook for the new alert ClusterLogForwarderOutputErrorRate.md
- LOG-8612 - Missing fields on event: ["file"] when rateLimitPerContainer is enabled.
CVEs
(none)
References
(none)
amd64
| registry.redhat.io/openshift-logging/cluster-logging-operator-bundle@sha256:442e8ca696eb526c0a933d260d1f50a5d45d57427116f0210f440ac7f1135573 |
| registry.redhat.io/openshift-logging/cluster-logging-rhel9-operator@sha256:71e9737f9b1c79ff038a0597b5d52c02635d1f7acd2f8758a542196461366c3d |
| registry.redhat.io/openshift-logging/log-file-metric-exporter-rhel9@sha256:5a31477ff71e5463b84824486ce5ee5edcfe197e87ee4e93f116e9d82d17add2 |
| registry.redhat.io/openshift-logging/eventrouter-rhel9@sha256:0348a9bd0940a9ef4e73a1d4ac715b4a14e0414e25faa9ccb2458f45644deab1 |
| registry.redhat.io/openshift-logging/logging-loki-rhel9@sha256:567971ac4f680536a8a63a43ea755adeffd73180aa8fcb914e15df31db5321fd |
| registry.redhat.io/openshift-logging/vector-rhel9@sha256:5354d6bc9be6726e8b4511a054ae41667b38ae59a84b9287179deb272943d6a3 |
| registry.redhat.io/openshift-logging/loki-operator-bundle@sha256:acd35a72d8dfad46cc8da7ab170e3e60590cefab38852231d39bed12e9d0d35e |
| registry.redhat.io/openshift-logging/loki-rhel9-operator@sha256:19e66517cc12bcf46429b0138db36c825c28842632431333cfe00f382ae73388 |
| registry.redhat.io/openshift-logging/lokistack-gateway-rhel9@sha256:3229569ee901baa920327b4789f4a5f9a99c15089d710728a50c61fbc87c6069 |
| registry.redhat.io/openshift-logging/opa-openshift-rhel9@sha256:ab4ee1f93c07706782e0fa8ee5258f3ec6681b71133468e27cb4885815281e76 |
arm64
| registry.redhat.io/openshift-logging/cluster-logging-rhel9-operator@sha256:4baa6d67cf5714ccdb9af39eb66a220a374cf4f7a6dc8e43ba58facef4818b45 |
| registry.redhat.io/openshift-logging/log-file-metric-exporter-rhel9@sha256:1b6d794ad1b73d96a193016ef698326ed9562af4ac775a092b41092cfaaff0ad |
| registry.redhat.io/openshift-logging/eventrouter-rhel9@sha256:d0661b20d234ef9382bddbdd35fe3b3a3a4782a54c60c950b3d95cbd24bf854c |
| registry.redhat.io/openshift-logging/logging-loki-rhel9@sha256:2c4ad8728884bcc39fcd6ab4e9ebbbdc463725056d759e932efd80308bea8f6c |
| registry.redhat.io/openshift-logging/vector-rhel9@sha256:cb756f15b820ea0ab95c2b6eaec559180c48022907f0409e89bfd44f09b68632 |
| registry.redhat.io/openshift-logging/loki-rhel9-operator@sha256:3e41dd0ef73a2b84ad912f013c00d6549fd4af3f600a0c89407faf8633a9058b |
| registry.redhat.io/openshift-logging/lokistack-gateway-rhel9@sha256:417ff5b35b729cb55fc57ca9f18e2d6e14e7534d39fe5aa37ad1f85a914a6fe8 |
| registry.redhat.io/openshift-logging/opa-openshift-rhel9@sha256:c903d5f2f765cd60190ef668240d4882df2e58e7bd10843d204c430883bf147e |
ppc64le
| registry.redhat.io/openshift-logging/cluster-logging-rhel9-operator@sha256:6eb06b0b37c5461395df69d8cdafdcd84506d4f7b3338b7a377330ec93feba36 |
| registry.redhat.io/openshift-logging/log-file-metric-exporter-rhel9@sha256:2e268b54dc667d2d02b0b42b6864d0a673dfa8338ab91b37887e1d9d4ecd78d0 |
| registry.redhat.io/openshift-logging/eventrouter-rhel9@sha256:b0ca7e2d284b43463c7e9f9db82ec8f70a4fc25e2cf117d1f78d557bebe3388c |
| registry.redhat.io/openshift-logging/logging-loki-rhel9@sha256:63366503d681b4b1411f0034e94d687b22aac7f8ef6b0801e6d4bd6df3a6a31c |
| registry.redhat.io/openshift-logging/vector-rhel9@sha256:1ed17a0da1595e4cec0645683cf049525140775306a7d6c8bf02f269bd408e52 |
| registry.redhat.io/openshift-logging/loki-rhel9-operator@sha256:9a66687944805503b1216981b9166e803ce32d9d43346a2f3b5321d1244397c2 |
| registry.redhat.io/openshift-logging/lokistack-gateway-rhel9@sha256:8a9696be3e8923512a0aee8845abc41a01ff3c6c18872bd3591f39f0fd636f18 |
| registry.redhat.io/openshift-logging/opa-openshift-rhel9@sha256:948f7bde1727c8e5e08769b79b1b5ea383b4a54c1468052afb610a74e6497bea |
s390x
| registry.redhat.io/openshift-logging/cluster-logging-rhel9-operator@sha256:539b2bfb7f5e685f1eb64008bc5935b66b9f590a1836dc96e352e5650e6d47de |
| registry.redhat.io/openshift-logging/log-file-metric-exporter-rhel9@sha256:5ecc3c48d65f7de2612f1fcaddf3fc44bc8434fd205508278ad6c7b22daf23f2 |
| registry.redhat.io/openshift-logging/eventrouter-rhel9@sha256:49838ee32502bf061c84a892f28f0e41665dbf8209953695916767ca6318f324 |
| registry.redhat.io/openshift-logging/logging-loki-rhel9@sha256:be874332517055aa3f5638f2c03ab896c3c7166a8e75ff7859310f29472380da |
| registry.redhat.io/openshift-logging/vector-rhel9@sha256:f09ad8528aaee3693a9d56a36bb7d47e93ba2d95731689416c903914b50f1256 |
| registry.redhat.io/openshift-logging/loki-rhel9-operator@sha256:64e7bb462abf3d13bc6770ec83929f51f08d1c4f916fe3010789f02fe27fbce5 |
| registry.redhat.io/openshift-logging/lokistack-gateway-rhel9@sha256:3f92ecdf92befbec1538ff9a5c8c6d5bb030e849f9d0f9a253f1b3483b913cfb |
| registry.redhat.io/openshift-logging/opa-openshift-rhel9@sha256:d988916d353da7932f6647cbafcdef26518476c004fd8fe181a68ef37f992611 |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.