Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2026:6537 - Bug Fix Advisory
Issued:
2026-04-02
Updated:
2026-04-02

RHBA-2026:6537 - Bug Fix Advisory

  • Overview
  • Updated Images

Synopsis

updated RHEL-9 based Middleware Containers container images

Type/Severity

Bug Fix Advisory

Topic

Updated RHEL-9 based Middleware Containers container images are now available

Description

The RHEL-9 based Middleware Containers container images have been updated to address the following security advisory: RHSA-2026:6390 (see References)

Users of RHEL-9 based Middleware Containers container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

Solution

The RHEL-9 based Middleware Containers container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

Affected Products

  • Red Hat JBoss Middleware 1 x86_64

Fixes

  • BZ - 2415637 - CVE-2025-10158 rsync: Rsync: Out of bounds array access via negative index

CVEs

  • CVE-2025-10158

References

  • https://access.redhat.com/errata/RHSA-2026:6390
  • https://access.redhat.com/containers

aarch64

openjdk-tech-preview/openjdk-21-jlink-rhel9@sha256:2141bd2d97bb215af154fb6d9416ff639476fc227385cfd127595af0481e6d08
ubi9/openjdk-17@sha256:36da560e775e1c41635cb8e3ac34440b4d7d3884bbb1a8dd1f1ee51e3fd8fc2a
ubi9/openjdk-21@sha256:bb1f15fc65dc14cbde9c7ee5d917459d12666550eea05ca0c0ab1235014fe06c
ubi9/openjdk-25@sha256:22f277d3a1a876ad9d054fb284c6c7981d05116c98ba90f7aed9191b9f0a329b

ppc64le

openjdk-tech-preview/openjdk-21-jlink-rhel9@sha256:9fdfcb2d84079188327be42ddb5c56fa9a2eac7e5a371aeeed4fcd02c4507119
ubi9/openjdk-17@sha256:70578eb39c1c75d5db12a82cb97d499204c6879b45fce49f337e43f90aae303d
ubi9/openjdk-21@sha256:75badb8550879e19362967eac5fea9ab785c7c79d69165e7200cc16920ec7383
ubi9/openjdk-25@sha256:002798c2abb2a25e52eede3cd840d24b1d115ab6da070df0a1db3c149038fe5a

s390x

openjdk-tech-preview/openjdk-21-jlink-rhel9@sha256:904dc8fc70525812b59c9ed71ca6443e410befb862803601058daee4d6a7fed2
ubi9/openjdk-17@sha256:c29f010716cd5a8495869825ba594b1af73ff08da5a6062e6f833d1cd577c78b
ubi9/openjdk-21@sha256:7b98cb07ca52bc7b54668a0dfcf57a0661c392e28908a86f10f3e8e0d86a88b0
ubi9/openjdk-25@sha256:39dd3cab98983b14168cd575afbfc59234c57572646f701955416354b8f21ee4

x86_64

openjdk-tech-preview/openjdk-21-jlink-rhel9@sha256:33aa180a5ce7a433f6ace08dc54078dd0879825f23d05b29e9d2f42ff36612b4
ubi9/openjdk-17@sha256:4dce0829cfbcd26c86f59eb450cd50b3f031114c229a063508b268caad5732ca
ubi9/openjdk-21@sha256:abcbf09c10b4c7d36f8b2e2a627a7c0618c447a14708136ec7b0a001432e5fe2
ubi9/openjdk-25@sha256:4402466eb8b82a4209a70c2fb3a3dbcdffd0209029d1e713e3b86ee83162c46c

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility