Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
红帽产品勘误 RHBA-2026:7058 - Bug Fix Advisory
发布:
2026-04-08
已更新:
2026-04-08

RHBA-2026:7058 - Bug Fix Advisory

  • 概述
  • 更新的镜像

概述

updated RHEL-8 based Middleware Containers container images

类型/严重性

Bug Fix Advisory

标题

Updated RHEL-8 based Middleware Containers container images are now available

描述

The RHEL-8 based Middleware Containers container images have been updated to address the following security advisory: RHSA-2026:6473 (see References)

Users of RHEL-8 based Middleware Containers container images are advised to upgrade to these updated images, which contain backported patches to correct these security issues, fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.

You can find images updated by this advisory in Red Hat Container Catalog (see References).

解决方案

The RHEL-8 based Middleware Containers container images provided by this update can be downloaded from the Red Hat Container Registry at registry.access.redhat.com. Installation instructions for your platform are available at Red Hat Container Catalog (see References).

Dockerfiles and scripts should be amended either to refer to this new image specifically, or to the latest image generally.

受影响的产品

  • Red Hat OpenShift Container Platform 4.12 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.11 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform 4.10 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform for Power 4.10 for RHEL 8 ppc64le
  • Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.10 for RHEL 8 s390x
  • Red Hat OpenShift Container Platform for ARM 64 4.10 aarch64

修复

  • BZ - 2449649 - CVE-2026-4519 python: Python: Command-line option injection in webbrowser.open() via crafted URLs

CVE

  • CVE-2025-10158
  • CVE-2026-4519

参考

  • https://access.redhat.com/errata/RHSA-2026:6473
  • https://access.redhat.com/containers

aarch64

ubi8/openjdk-17@sha256:00a042c2e3ed2fa801d2c43c58dbc0bedbc2d4115f2d6f957135e191d24615a3
ubi8/openjdk-17-runtime@sha256:84e8525820f0068f0f6f950df5f80cfb859dddba2c4a446d506583bf5c6e2563
ubi8/openjdk-21@sha256:c5d47f67c40dc3480365cca7aeeb01e897eb96f74e56c14091b29d2f4768dc8c
ubi8/openjdk-21-runtime@sha256:6259e5b255d0ab6921c56cfb4007c0c83d90f00dc332c1f4e85ccec6e2a1a9f3
ubi8/openjdk-8@sha256:f0abf4a7b3e79b8b314ffb2f02ca94a37114bd3f57dab78da0ef8f94ee21aa25
ubi8/openjdk-8-runtime@sha256:1b39046ef93fb7a80d037015915f6d7cb97a8d58e8fc24e1537b50c09415e533

ppc64le

ubi8/openjdk-17@sha256:7cb02b05d155e03a01cf9d387188c23629c3988c67c8382b20790d97114c0cae
ubi8/openjdk-17-runtime@sha256:e1dd9651090836aca8dd2bd3fb058062acfe8222535cec0564bf279382c61790
ubi8/openjdk-21@sha256:7a47dfcaa7d767997c56d3337fd0f3cc2ce7c5e016158968042a27abe98db028
ubi8/openjdk-21-runtime@sha256:d10590fae4b6a85ed7a54aee6784439c7bad361614a51074b1ddf807a6d6826c
ubi8/openjdk-8@sha256:917b2bbd9902206267d778e1d2bee44ceb567f511def1a6edb770b77c8b601be
ubi8/openjdk-8-runtime@sha256:20949e7c9f5297aca0aa61d1866e9a129142ddb011cc46aa055b034f5db77534

s390x

ubi8/openjdk-17@sha256:7278132981cad93b68d09671f8faa01ca583e9f1823cc4bf2385e3d1ba4b0fbe
ubi8/openjdk-17-runtime@sha256:95f1dd1aaedb32ae44e258866eaf40c0daafc58580c737849e36373d9e9e1dfc
ubi8/openjdk-21@sha256:06eb4bb849f60ea8b556179fe232e4eb6c17a4d439c277d80b7ee371629c59ee
ubi8/openjdk-21-runtime@sha256:8589f0ad12bada39be71810b734d6aaece97ee8817d0314d82cef1a277b13617
ubi8/openjdk-8@sha256:0c2da7bc062abb84920667e7ae853ff17acc955fb1c4c30bbd61246d0def3203
ubi8/openjdk-8-runtime@sha256:263a6aee74a5f8ae7a5293db2d4b453987c80900ff963a51f4fb528b7457805f

x86_64

ubi8/openjdk-17@sha256:4ec995a385e7dc9c0c78a63fcf732b6800cb149a11f0085bf306bfb239359366
ubi8/openjdk-17-runtime@sha256:d8abe7e39f0abbf050eba488b7ff026b8453129b95411211315a07ef18f63262
ubi8/openjdk-21@sha256:67b3b62ed875120666a94a33a6d645c5b061c6da59d4afef307709b1fb75df9b
ubi8/openjdk-21-runtime@sha256:ce9613d305cf139b395d6af631799041bf2da79a712fed65e5059f02f5381ac7
ubi8/openjdk-8@sha256:53dac3224a76a1caf0f7871f88c5c9df56b403704d8269552fa1799ad7adeac7
ubi8/openjdk-8-runtime@sha256:23def2a3d2b85d2b4045aa7f6024841308c97a2cf91a504d223266ab879e3521

Red Hat 安全团队联络方式为 secalert@redhat.com。 更多联络细节请参考 https://access.redhat.com/security/team/contact/。

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility