Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2026:30131 - Bug Fix Advisory
Issued:
2026-06-25
Updated:
2026-06-25

RHBA-2026:30131 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated RHEL-9 based Middleware Containers container images

Type/Severity

Bug Fix Advisory

Topic

Updated RHEL-9 based Middleware Containers container images are now available

Description

The RHEL-9 based Middleware Containers container images have been updated to address the following security advisory: RHSA-2026:28911 (see References)

Users of RHEL-9 based Middleware Containers container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The RHEL-9 based Middleware Containers container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat JBoss Middleware 1 x86_64

Fixes

  • BZ - 2368764 - CVE-2025-5278 coreutils: Heap Buffer Under-Read in GNU Coreutils sort via Key Specification

CVEs

  • CVE-2024-34459
  • CVE-2025-5278
  • CVE-2025-13151
  • CVE-2026-33416
  • CVE-2026-33636

References

  • https://access.redhat.com/errata/RHSA-2026:28911
  • https://access.redhat.com/containers

aarch64

openjdk-tech-preview/openjdk-21-jlink-rhel9@sha256:b705e12b8b095ba886cb599722aaff425a754bc2d8ab60e88d40df45ec07471f
ubi9/openjdk-17@sha256:8800a604a651d82fd58463a7c5cbcdf7ab30938a7ca106c12a173d10d48cf490
ubi9/openjdk-17-runtime@sha256:c521cecbf404cf96cee337a506d54a3e62a8566e68348d1feefb4e3e765b18e0
ubi9/openjdk-21@sha256:31bc9614028fa1dfcf52a2aea869c73ef771bfa389041a7752748df887a9df5e
ubi9/openjdk-21-runtime@sha256:f0b742c6e67f0888922698f82dcb6449465a32119923527ba428fcea12fa59ba
ubi9/openjdk-25@sha256:991b5e143fa50d94ab5341bea16f9d642a30f717c01c1fe42281870d72a05570
ubi9/openjdk-25-runtime@sha256:4e71a29397279d4ea6bff81b01068b7e6dde1192534779a59a64002203ce3a45

ppc64le

openjdk-tech-preview/openjdk-21-jlink-rhel9@sha256:a7f523c25932d6dcb14af31f61348bbb5001be13ec6c70c61564e8532a4c5e69
ubi9/openjdk-17@sha256:dcb35e7c635fb8f0ff2280380fa761bb0bc788e615039f9bf0630635ee9e1edf
ubi9/openjdk-17-runtime@sha256:c5ccff2d3b473f449c6ed9219c79002b44791b6ec9f97ce7c1f9c9094f5f4cf4
ubi9/openjdk-21@sha256:8e5d84af5a367e82622da4b97ee626f6b424339442f6bf74356182a79290a4f7
ubi9/openjdk-21-runtime@sha256:62914fab1e74d403cf5d50d61fa797de2d701693f70b274d24ab074c4e6bc68f
ubi9/openjdk-25@sha256:09c30fdc4278ba215d6e5717d31a876e8446574a3b15e4994d95e64956dd7726
ubi9/openjdk-25-runtime@sha256:5fe0115f682cb52c680637cb8f6c7215fa1cd34ea7c1cc59494b414410bb083d

s390x

openjdk-tech-preview/openjdk-21-jlink-rhel9@sha256:94547e840895222c290512c4d85fa7ee8dd0e73d09dfd656283b2c07d691676c
ubi9/openjdk-17@sha256:de5e0e32618c66ba42afb329c3f6c223fc6c172c60d8010ee2736e7324a4a00a
ubi9/openjdk-17-runtime@sha256:baa17d892e834f3915fd3e1f6cff7817e56e44193b2e3dcb26c0198d5cac49e9
ubi9/openjdk-21@sha256:a2dd51715cb365f68b0a25669a481f282d1e45e05f962f0f7166d2e180fba5ef
ubi9/openjdk-21-runtime@sha256:4c254909e83b9d2bae180943169b1e6a665b04325d1dda24616d6093651efbc7
ubi9/openjdk-25@sha256:c46d642fe1d8e5d74178398ef702c8cccc50c0615ad888aaced709c49a1930e7
ubi9/openjdk-25-runtime@sha256:77ab1a578e455048392769ed5d4dfccf0875201255ecd82ae53aba2e7daee9b9

x86_64

openjdk-tech-preview/openjdk-21-jlink-rhel9@sha256:374e7fca9b1bacf221fba00d122ef1cf6c48abf44ee2b25492c73ffd32ec9083
ubi9/openjdk-17@sha256:c54d7a67305912d051232c096e491cae9987624905dbf6e9dda7312446365cf0
ubi9/openjdk-17-runtime@sha256:11a4560849fb61661a593afe50d1a6eb35cbc19776a6c7cccae411efe1e8983f
ubi9/openjdk-21@sha256:5ecce635a478ae3546828487a97cc9b1672a901d48a993b74e48eb2c02fe2738
ubi9/openjdk-21-runtime@sha256:9657038ef2e72734caded997edc335ed69c69d8eeb983f26707461c625dd46d7
ubi9/openjdk-25@sha256:3863190b966acfa4791ca75caa59836fe733f5fd2fa51e9cf677551bf6f8e9a0
ubi9/openjdk-25-runtime@sha256:bd10e66fb1d472705b1596f6ada00a8e7a8142f8d5c3b8480d745f5640e3207e

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility