Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2023:2023 - Security Advisory
Issued:
2023-04-26
Updated:
2023-04-26

RHSA-2023:2023 - Security Advisory

  • Overview
  • Updated Images

Synopsis

Important: Red Hat OpenShift Data Foundation 4.11.7 Bug Fix and security update

Type/Severity

Security Advisory: Important

Topic

Updated images that fix several bugs are now available for Red Hat OpenShift Data Foundation 4.11.7 on Red Hat Enterprise Linux 8 from Red Hat Container Registry.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Red Hat OpenShift Data Foundation is software-defined storage integrated with and optimized for the Red Hat OpenShift Data Foundation. Red Hat OpenShift Data Foundation is a highly scalable, production-grade persistent storage for stateful applications running in the Red Hat OpenShift Container Platform. In addition to persistent storage, Red Hat OpenShift Data Foundation provisions a multicloud data management service with an S3 compatible API.

Security Fix(es):

  • vault: Vault Entity Alias Metadata May Leak Between Aliases With The Same Name Assigned To The Same Entity (CVE-2022-40186)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

All users of Red Hat OpenShift Data Foundation are advised to upgrade to these updated images, which provide several bug fixes.

Solution

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

For details on how to apply this update, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat OpenShift Data Foundation 4 for RHEL 8 x86_64
  • Red Hat OpenShift Data Foundation for IBM Power, little endian 4 for RHEL 8 ppc64le
  • Red Hat OpenShift Data Foundation for IBM Z and LinuxONE 4 for RHEL 8 s390x

Fixes

  • BZ - 2171965 - [4.11 clone] Secrets are used in env variables
  • BZ - 2176012 - [ODF 4.11] Move the defaults for rookceph operator from configmap to csv
  • BZ - 2181405 - CVE-2022-40186 vault: Vault Entity Alias Metadata May Leak Between Aliases With The Same Name Assigned To The Same Entity
  • BZ - 2183683 - [ODF 4.11] Deployment of ODF 4.9 over external mode failing with: panic: assignment to entry in nil map in ocs-operator logs
  • BZ - 2186456 - Include at ODF 4.11 container images the RHEL8 CVE fix on "openssl"

CVEs

  • CVE-2020-10735
  • CVE-2021-28861
  • CVE-2022-4304
  • CVE-2022-4415
  • CVE-2022-4450
  • CVE-2022-40186
  • CVE-2022-40897
  • CVE-2022-45061
  • CVE-2022-48303
  • CVE-2023-0215
  • CVE-2023-0286
  • CVE-2023-0361
  • CVE-2023-23916

References

  • https://access.redhat.com/security/updates/classification/#important

ppc64le

odf4/cephcsi-rhel8@sha256:e9e93ea01f8905aa9a6c34a1b9d3405ea26922492d5661a51303ad53d847f470
odf4/mcg-core-rhel8@sha256:c63fd250d3069920c68314a34cb2089dfe4b898725505149d51501566b06c5c3
odf4/mcg-operator-bundle@sha256:01f967a1debdcc1574ab28c5f307a6fd051f5113ef6a71c2ae0eddd150e06cd2
odf4/mcg-rhel8-operator@sha256:f99cf30ec5f51f3c3cda1b98183b8588ac216779e863bad0fbcd873925de3ff0
odf4/ocs-metrics-exporter-rhel8@sha256:9780dfaad7ccbf83553610c38e9445c0b0edf265015c0be2bc74cf9cbfd27b3e
odf4/ocs-metrics-exporter-rhel9@sha256:9780dfaad7ccbf83553610c38e9445c0b0edf265015c0be2bc74cf9cbfd27b3e
odf4/ocs-must-gather-rhel8@sha256:73e89b2b65915d16816aba24002d334ee4e2ddad417cff8223d9b529e70aa99d
odf4/ocs-operator-bundle@sha256:36dfbc5e2f8cdbfea62f12a04b0725ae570d039b77e85838516aaabaaead8187
odf4/ocs-rhel8-operator@sha256:819028eb4908dface95a04bdeed668e51372e8e94fe1ec174011816643fcbd45
odf4/ocs-rhel9-operator@sha256:819028eb4908dface95a04bdeed668e51372e8e94fe1ec174011816643fcbd45
odf4/odf-console-rhel9@sha256:b1d7966cc60da952ac4cfa77b14397209b90819be53e33773dbc3f7f5062d0a7
odf4/odf-console-rhel8@sha256:b1d7966cc60da952ac4cfa77b14397209b90819be53e33773dbc3f7f5062d0a7
odf4/odf-csi-addons-operator-bundle@sha256:12ba8576acc7a009e35f915eca77f597375b86108345c553e10d24fe0cc76b7e
odf4/odf-csi-addons-rhel8-operator@sha256:9f800c7aaa1fbb6a560836df0dba04bdc61d90ef76690dec7a47bbd8682326db
odf4/odf-csi-addons-rhel9-operator@sha256:9f800c7aaa1fbb6a560836df0dba04bdc61d90ef76690dec7a47bbd8682326db
odf4/odf-csi-addons-sidecar-rhel8@sha256:769ca67d3d2b006a565bbe8cc12dd96d6fa00f876dd11f31fe2bf289686eb7b4
odf4/odf-csi-addons-sidecar-rhel9@sha256:769ca67d3d2b006a565bbe8cc12dd96d6fa00f876dd11f31fe2bf289686eb7b4
odf4/odf-lvm-must-gather-rhel8@sha256:08e55e9981ae5d782aee3cd108aff473978aed67f62ec1d5fdbf8163e3815f60
odf4/odf-lvm-operator-bundle@sha256:1172a3d9f58122eaa196488f8aca6cb3ea3fdef937a95e589f84a70e0654ec10
odf4/odf-lvm-rhel8-operator@sha256:4a31e894e04061dc3a23a503c0792e592cb574a42f0f14686957355b4fa5a281
odf4/odf-multicluster-console-rhel8@sha256:7298bc30a34c304c4d39f29403ba882896c42503729543bf4bf89ae1533e2414
odf4/odf-multicluster-console-rhel9@sha256:7298bc30a34c304c4d39f29403ba882896c42503729543bf4bf89ae1533e2414
odf4/odf-multicluster-operator-bundle@sha256:5e907bb418c07dd7fe7cd6b99afdb22d66fc958e3a6aa1f74cdd37ee8423cb4a
odf4/odf-multicluster-rhel8-operator@sha256:8f4c7a2394b202dea1499207b15757b6295d7d08ea15630eba0f5195689f30a9
odf4/odf-multicluster-rhel9-operator@sha256:8f4c7a2394b202dea1499207b15757b6295d7d08ea15630eba0f5195689f30a9
odf4/odf-operator-bundle@sha256:eff83356808e99100c1662a575192402196f48b20d5f47c7d846f7517fc18755
odf4/odf-rhel8-operator@sha256:29249548624f233eb32ea9e972abb02c9e2495167de6a6443ea4c14669071ce2
odf4/odf-rhel9-operator@sha256:29249548624f233eb32ea9e972abb02c9e2495167de6a6443ea4c14669071ce2
odf4/odf-topolvm-rhel8@sha256:2bc67437fbcf11c191712a6136ac5c5fe0339a55d1cb50d2decb3d58ef54d547
odf4/odr-cluster-operator-bundle@sha256:4a8d49e932ae018021da400c686caa3cf4a77e31f4f63f6c6408c87c73b485f7
odf4/odr-hub-operator-bundle@sha256:73a38ab692ddc4b9041e53b5320d2457d854d9fab9d3031539fb10716229cde0
odf4/odr-rhel9-operator@sha256:0ef80daadd84485ffa552937a1d4106bfbff2c134347fc4bccda703c7d0ec529
odf4/odr-rhel8-operator@sha256:0ef80daadd84485ffa552937a1d4106bfbff2c134347fc4bccda703c7d0ec529
odf4/rook-ceph-rhel9-operator@sha256:31f0ee81d1ac4e98baa7da2a16348e4dd2d30bddf31ff874fa90f9b5a49c5bba
odf4/rook-ceph-rhel8-operator@sha256:31f0ee81d1ac4e98baa7da2a16348e4dd2d30bddf31ff874fa90f9b5a49c5bba
odf4/volume-replication-rhel8-operator@sha256:38a58402f4dbca7c7862d085439e108356740348593c9fd7f9467a8750613874

s390x

odf4/cephcsi-rhel8@sha256:12cc13cdc9e87b856b601e1ea7b63a33ddeec3025127382d8c12bbaa5cc583bc
odf4/mcg-core-rhel8@sha256:1ea2f4993f9cb81b963f192fa5342c9c8ba4fbde39782385fcc3d8a05626a8fb
odf4/mcg-operator-bundle@sha256:9df8d57e78e64a6a317a031e51914aaf352cdcb6da75852f12c94ca2825c9630
odf4/mcg-rhel8-operator@sha256:9b4a6cc74eb0a44eab70a0e3cc23013bcb35384edc885f5d048e3bf22d7bf1b8
odf4/ocs-metrics-exporter-rhel8@sha256:5b9135c47abacae5bc579b0b995f7c39947b2d8f19e4754e931ca115984b4db4
odf4/ocs-metrics-exporter-rhel9@sha256:5b9135c47abacae5bc579b0b995f7c39947b2d8f19e4754e931ca115984b4db4
odf4/ocs-must-gather-rhel8@sha256:07bde3a9b7bbad4b800db4204cbca5d0f0a94fbef42bb737115bfe2e75597560
odf4/ocs-operator-bundle@sha256:a41391493fe59a60a0aa50e04048ab3aabe9eb30d1e6d41e1854377f325321d5
odf4/ocs-rhel8-operator@sha256:f078cdf35f8acbc52879552e67c98b00d624f1a579f770ed6ff690855e17e212
odf4/ocs-rhel9-operator@sha256:f078cdf35f8acbc52879552e67c98b00d624f1a579f770ed6ff690855e17e212
odf4/odf-console-rhel9@sha256:041c1a9f64b3fb0824137ca508ab656d6d05a50ef4aa798ac2d4f11a0a1e9cf5
odf4/odf-console-rhel8@sha256:041c1a9f64b3fb0824137ca508ab656d6d05a50ef4aa798ac2d4f11a0a1e9cf5
odf4/odf-csi-addons-operator-bundle@sha256:f7c17b06c30ad4b2fa514dc6a574879ee7a4a6845bf1bf938594d11544f8ea31
odf4/odf-csi-addons-rhel8-operator@sha256:d4b9018360a89f02dbbd2830631e2956081ce34247dfbedbd023bfe155ba9cfd
odf4/odf-csi-addons-rhel9-operator@sha256:d4b9018360a89f02dbbd2830631e2956081ce34247dfbedbd023bfe155ba9cfd
odf4/odf-csi-addons-sidecar-rhel8@sha256:af430af47b51462a7ef4e12978e6fceb01eeaac13dc12b9f8ed962197e241e02
odf4/odf-csi-addons-sidecar-rhel9@sha256:af430af47b51462a7ef4e12978e6fceb01eeaac13dc12b9f8ed962197e241e02
odf4/odf-lvm-must-gather-rhel8@sha256:ea85876fed88d133fefb70a7863e44592298885a3eeb1a78c2bea11011431140
odf4/odf-lvm-operator-bundle@sha256:adb1d62c3fdedded8ffd16a6baff5a5110e15728876b25b2f72ab2d6a40788f0
odf4/odf-lvm-rhel8-operator@sha256:aa96d34b74e921b6a0af0d71fbb0671bf8edc4d11ae66fdec7e4e8c58fcd70db
odf4/odf-multicluster-console-rhel8@sha256:4247d5a9f305b1fdc9d2516a2e9b04928944fb5a536140f3d06300c7f728f449
odf4/odf-multicluster-console-rhel9@sha256:4247d5a9f305b1fdc9d2516a2e9b04928944fb5a536140f3d06300c7f728f449
odf4/odf-multicluster-operator-bundle@sha256:643f34fd85e9df0dce1ad4216c245de8b02b6451399f40d2ca4172c2d3a29ecb
odf4/odf-multicluster-rhel8-operator@sha256:817b28b0d90cdbc104ac86f94a7d66a011077409bf41aae6cdae36752a4ec997
odf4/odf-multicluster-rhel9-operator@sha256:817b28b0d90cdbc104ac86f94a7d66a011077409bf41aae6cdae36752a4ec997
odf4/odf-operator-bundle@sha256:360561335202e23cfff24cf936581aebf056efb42f41b81062ea604e89c48f5b
odf4/odf-rhel8-operator@sha256:3ae58c3470b2e9d737fbcd02e1a3eb41228e72a32dbb503d7b296aba37affd2c
odf4/odf-rhel9-operator@sha256:3ae58c3470b2e9d737fbcd02e1a3eb41228e72a32dbb503d7b296aba37affd2c
odf4/odf-topolvm-rhel8@sha256:5faae4be4f5e43f765922965d7b2266b7b1ab5d839519b35024f917b51532d39
odf4/odr-cluster-operator-bundle@sha256:1ab9002fccf0d36020f294443e5e21cdf4486b2d6abcb2c5858f0925c3a387ea
odf4/odr-hub-operator-bundle@sha256:a9f414cafb89acee6c10786eac8f33e63a1dbcb54ecb116918eae01f442ace3e
odf4/odr-rhel9-operator@sha256:b12288b347676f1dbfa16b765702de552447b72e0d0ca1700db8f5bd7d4da4cc
odf4/odr-rhel8-operator@sha256:b12288b347676f1dbfa16b765702de552447b72e0d0ca1700db8f5bd7d4da4cc
odf4/rook-ceph-rhel9-operator@sha256:0b5c88cc500485c0cad5b271ca832c2e46627047e4fe2f0c01ebfa0b161700b5
odf4/rook-ceph-rhel8-operator@sha256:0b5c88cc500485c0cad5b271ca832c2e46627047e4fe2f0c01ebfa0b161700b5
odf4/volume-replication-rhel8-operator@sha256:6292b624929a86b887e6e77815536e41f48055c4157c5244378d8db73d51717d

x86_64

odf4/cephcsi-rhel8@sha256:4e0cf0314550ee420d0cb50a9233247e3091a8af685743ecef75db8cb9208d8b
odf4/mcg-core-rhel8@sha256:e760d1acd790a2831f4a4f3285b550a28c169a74cf8d8f614957fdd857a7b753
odf4/mcg-operator-bundle@sha256:4e38079e758ad447719bb87f61f0edb3e617e3e8064d943cbe33ee7e4ade9bce
odf4/mcg-rhel8-operator@sha256:7699f8b66a7e27b59e041ab783dc76f6333592eff5934174a6998271d48b60f7
odf4/ocs-metrics-exporter-rhel8@sha256:3433cf39724afaa83889476101bfb55ebc546584e250c4b854eab10bf61966c3
odf4/ocs-metrics-exporter-rhel9@sha256:3433cf39724afaa83889476101bfb55ebc546584e250c4b854eab10bf61966c3
odf4/ocs-must-gather-rhel8@sha256:b23c05df9bd698d5bf25944eb3c9a1bd64ff454a7e45a371a8472c9028dd5357
odf4/ocs-operator-bundle@sha256:5fa115ef9ae9cb66ea311bd36b84f9186df3a8772ff7e936c96bd2118ea64579
odf4/ocs-rhel8-operator@sha256:b41588a1a2318a952291710a90ce28d2dcb0697d28a86c3b811e4dd3af760305
odf4/ocs-rhel9-operator@sha256:b41588a1a2318a952291710a90ce28d2dcb0697d28a86c3b811e4dd3af760305
odf4/odf-console-rhel9@sha256:24e913c32a2062864dfb0aa83585597cbfacfa639e5d84e1ddbdfdf445e73a10
odf4/odf-console-rhel8@sha256:24e913c32a2062864dfb0aa83585597cbfacfa639e5d84e1ddbdfdf445e73a10
odf4/odf-csi-addons-operator-bundle@sha256:7cfcf895d6a34ae395b841e54fa305e2929a6f918fb71b051fe6c11d0c29116f
odf4/odf-csi-addons-rhel8-operator@sha256:4e28750bfa2776dd5b7a7d3ae90e247e3ee37fe13d59cb5b6930899cb649bf6f
odf4/odf-csi-addons-rhel9-operator@sha256:4e28750bfa2776dd5b7a7d3ae90e247e3ee37fe13d59cb5b6930899cb649bf6f
odf4/odf-csi-addons-sidecar-rhel8@sha256:c434e15b7d2fcbe72182411d8ea02acf72bb514dc9ec47b5b95936f9a68f8a5a
odf4/odf-csi-addons-sidecar-rhel9@sha256:c434e15b7d2fcbe72182411d8ea02acf72bb514dc9ec47b5b95936f9a68f8a5a
odf4/odf-lvm-must-gather-rhel8@sha256:8458806dff482aba5243e305d2f0550c245e88a105fbfda0b2133433078b963d
odf4/odf-lvm-operator-bundle@sha256:9a44945376af125adf6e0fbc6fdb6282b1ba27552e09bec094221ec4ea862cf2
odf4/odf-lvm-rhel8-operator@sha256:ab5645bc795907fcf6bbf5b96b8a772e624ba2d3723adb44a3b8f873af1f6f5b
odf4/odf-multicluster-console-rhel8@sha256:2d2df99388befeb4b24053e2928903c1f9587e802535899cffb665577a1c45e5
odf4/odf-multicluster-console-rhel9@sha256:2d2df99388befeb4b24053e2928903c1f9587e802535899cffb665577a1c45e5
odf4/odf-multicluster-operator-bundle@sha256:6b544b25d24fb4e72d9b817533e4fbac0794e6ff0dec37d501ce0c3ab828947a
odf4/odf-multicluster-rhel8-operator@sha256:3d4a94215cc89c1968531c0e0244ea5959a5deeced8effa90b6d1f489fb9db3d
odf4/odf-multicluster-rhel9-operator@sha256:3d4a94215cc89c1968531c0e0244ea5959a5deeced8effa90b6d1f489fb9db3d
odf4/odf-operator-bundle@sha256:ff711f723fa710f33878e75e9edca38440cd4ab34118dd8ca53b6f5650aef116
odf4/odf-rhel8-operator@sha256:cff47800ee4ecd8983e522c523a2bdafc0e9fbb7000aea3237e62aaecfa2aad7
odf4/odf-rhel9-operator@sha256:cff47800ee4ecd8983e522c523a2bdafc0e9fbb7000aea3237e62aaecfa2aad7
odf4/odf-topolvm-rhel8@sha256:4ba37e0bf440954ecb2c93f21eac46a8ecb43f0f87be3cdcade1a7e1dce3c627
odf4/odr-cluster-operator-bundle@sha256:76fe8803c75a760e326f9db83486fceb88b107231e7d7d7af8f5abe39be80f22
odf4/odr-hub-operator-bundle@sha256:e47dfb2d61f86d79b96521caae841ec63f0b02d53623a726533383308168b0f9
odf4/odr-rhel9-operator@sha256:9edef004fc98065c9be52c81b9f0b895885ca0a89f29a75d9489ed2acbf99dd8
odf4/odr-rhel8-operator@sha256:9edef004fc98065c9be52c81b9f0b895885ca0a89f29a75d9489ed2acbf99dd8
odf4/rook-ceph-rhel9-operator@sha256:a694abecc595d40399b3333db95ccf570107b213a30da9e572f1ac430ce8400b
odf4/rook-ceph-rhel8-operator@sha256:a694abecc595d40399b3333db95ccf570107b213a30da9e572f1ac430ce8400b
odf4/volume-replication-rhel8-operator@sha256:a0f6c537ba68b791ef5900cfee420329dcd5ddb1504f8deffdb8fa26140223e1

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility