Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2026:2592 - Bug Fix Advisory
Issued:
2026-02-11
Updated:
2026-02-11

RHBA-2026:2592 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated RHEL-8 based Middleware Containers container images

Type/Severity

Bug Fix Advisory

Topic

Updated RHEL-8 based Middleware Containers container images are now available

Description

The RHEL-8 based Middleware Containers container images have been updated to address the following security advisory: RHSA-2026:2389 (see References)

Users of RHEL-8 based Middleware Containers container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The RHEL-8 based Middleware Containers container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat OpenShift Container Platform 4.12 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.11 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.10 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform for Power 4.10 for RHEL 8 ppc64le
  • Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.10 for RHEL 8 s390x
  • Red Hat OpenShift Container Platform for ARM 64 4.10 aarch64

Fixes

  • BZ - 2408762 - CVE-2025-6176 Scrapy: python-scrapy: brotli: Python brotli decompression bomb DoS

CVEs

  • CVE-2025-6176
  • CVE-2025-15366
  • CVE-2025-15367
  • CVE-2026-0865
  • CVE-2026-1299

References

  • https://access.redhat.com/errata/RHSA-2026:2389
  • https://access.redhat.com/containers

aarch64

ubi8/openjdk-17@sha256:5108398ecf85631a44ea47b49cc44c8fe02e36874cd1414fffa179a96f372ad9
ubi8/openjdk-17-runtime@sha256:ff79d3a8ac4e571b1d59ab1b717a684c1cebb31925319f7daf1a88aaa4b522aa
ubi8/openjdk-21@sha256:af85dfcfbd55c09cecd7f50ee4ad24ddf8c84ee53314c682d1c471f4214a52c7
ubi8/openjdk-21-runtime@sha256:474a778ab5eb4cfb08694dcc9694119dd5e35013c2a7b41878bb6fc0b134b61e
ubi8/openjdk-8@sha256:f0e94269d690b3fa9c6e746cc58183762499b2f199cf3b7ddbbeb84ec6edea40
ubi8/openjdk-8-runtime@sha256:cfd80713d83c8aeced6b3a40d1b6caaac6cbab0da2e0b4b240056c2b531eb3ad

ppc64le

ubi8/openjdk-17@sha256:dcb2e053bfdd76997c715855621ba9748de433c676a3de25579e684260e13b73
ubi8/openjdk-17-runtime@sha256:fb5ca6eb6e85c8c32ac7512e7f5f14096dc27433133848bae680a5d7f3f7a83d
ubi8/openjdk-21@sha256:38bd5a98c151c150fc0b9c8381d22f6f15e8be543355e46738b3da342e432883
ubi8/openjdk-21-runtime@sha256:aa878c1b526d8149f24fd3674b0ce0b047eeb3cf98b12f9d80b83893eaaeb38b
ubi8/openjdk-8@sha256:d8db83f3f307cefba14aec07c3670fa071842cc0490f415722d666895dbe3f5a
ubi8/openjdk-8-runtime@sha256:d723bf09135b898b9380af6957059d9bbc023de11bdb591586005d00bb70e0fd

s390x

ubi8/openjdk-17@sha256:eebc8aaeb73e2af3f40a684ec472fbc1f70f5f7cee42f0a3dee37ee9eac588d3
ubi8/openjdk-17-runtime@sha256:35b6c428a1ebf662bf8f1d6a167197e0fb2e71711fad27d7312d84bf21450e74
ubi8/openjdk-21@sha256:21700ec486c86c12f4fb27325c10c807763f2a7986e53076184758aad6ce7f13
ubi8/openjdk-21-runtime@sha256:d1655a76ca09155781744192ab9d68f6f2eee999cdaadacd571189ebe6de4b09
ubi8/openjdk-8@sha256:7d95b8d5068b0b7c61e82b2025ada89790f45316f4643b3ccc0fbddb986745e4
ubi8/openjdk-8-runtime@sha256:ab5eb8df3eca2c88ccaadf234ce2a7c7ac57be6b46aae36e89b0b6bc5e665db1

x86_64

ubi8/openjdk-17@sha256:cc58c15aacfc9b7713184a5c85f311569483962a60beef69bae2440d219e1f9b
ubi8/openjdk-17-runtime@sha256:14e19c10d195ba56ee049d1abd8f24e61a1a095cabdfa932d195497809451243
ubi8/openjdk-21@sha256:9b9877fd776cd79e60c7bf7a3e0eb1bd9811086d094f243c5d5568d72ad4d700
ubi8/openjdk-21-runtime@sha256:19d601b1c379ef71105cdf1f350acdfefb9672f568273c3debfbec528d605893
ubi8/openjdk-8@sha256:02c6e869a77c202fef0df884b508ec404e47f7166e4ac3fc060b609a5c229495
ubi8/openjdk-8-runtime@sha256:f18d760347cad1dbd2a136a14e58db39cd3004eed84c3cf630ae140c4cca02cc

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility