Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:10665 - Security Advisory
Issued:
2024-12-02
Updated:
2024-12-02

RHSA-2024:10665 - Security Advisory

  • Overview
  • Updated Images

Synopsis

Low: ACS 4.4 enhancement and security update

Type/Severity

Security Advisory: Low

Topic

Updated images are now available for Red Hat Advanced Cluster Security (RHACS). The updated image includes a security fix.

Description

This release of ACS 4.4.7 provides the following security fix:

  • cross-spawn: Regular expression denial of service (CVE-2024-21538)

Solution

If you are using an earlier version of RHACS 4.4, you are advised to upgrade to this patch release 4.4.7.

Affected Products

  • Red Hat Advanced Cluster Security for Kubernetes 4 x86_64
  • Red Hat Advanced Cluster Security for Kubernetes for IBM Z and LinuxONE 4 s390x
  • Red Hat Advanced Cluster Security for Kubernetes for IBM Power, little endian 4 ppc64le

Fixes

  • BZ - 2324550 - CVE-2024-21538 cross-spawn: regular expression denial of service
  • ROX-27071 - Release RHACS 4.4.7

CVEs

  • CVE-2024-21538
  • CVE-2024-50602

References

  • https://access.redhat.com/security/updates/classification/#low

ppc64le

advanced-cluster-security/rhacs-central-db-rhel8@sha256:f9116251fdcebcd63db2d999f22b2d7440b73fe3dae6fd090f0ca05167aee231
advanced-cluster-security/rhacs-collector-rhel8@sha256:ab4235c26d67b030c9c68c093316d973ecc6db1f136f198abbbf50009f0fb63e
advanced-cluster-security/rhacs-collector-slim-rhel8@sha256:fed529e65fd89cdd06ac919b9226cc6e2c6c84403378805d0fdcbee3eca88aff
advanced-cluster-security/rhacs-main-rhel8@sha256:c4944edf885611bc28a67fa141db9189c449879eee99929194671e7b9af668c5
advanced-cluster-security/rhacs-operator-bundle@sha256:f1c7a8491aca5f61309443be7a0762b66960ddbdaa2a1925e42b6675b1026b44
advanced-cluster-security/rhacs-rhel8-operator@sha256:3d2f4a5b71438a92cc65b7bb5763886382aaa7310cbc120ff64d4ae6adf3c38a
advanced-cluster-security/rhacs-roxctl-rhel8@sha256:e44891cd8866eddfaf9b7787874f5c22ec21fbd9b3485bb51554e761730764db
advanced-cluster-security/rhacs-scanner-db-rhel8@sha256:32e74fc14962194e84930ac9d483def0b73b46aec3f4e53226e1585543a09ada
advanced-cluster-security/rhacs-scanner-db-slim-rhel8@sha256:762049ef08361a1d93dd9e03359691e21167d858ea32d4a67e5015e2325d02f1
advanced-cluster-security/rhacs-scanner-rhel8@sha256:56add4d2435af20bbf6605424aa8757a94e47f7ba4afd7521d4e87303ac915cc
advanced-cluster-security/rhacs-scanner-slim-rhel8@sha256:9f9cc3101f79620e942d471d3a5d08fb8b466a47bbcbf963bb5c1c0f336a2f1c
advanced-cluster-security/rhacs-scanner-v4-db-rhel8@sha256:1f9ab80dd80e07905f432ecec4925a3171b562cacd7df34fdeb5659cb5e31313
advanced-cluster-security/rhacs-scanner-v4-rhel8@sha256:d94986a789da892004922523c70526619862c556e3efc7c2ff03be3ce739960f

s390x

advanced-cluster-security/rhacs-central-db-rhel8@sha256:138f8a8a15a155c2cc218ece00f816198bc1f701b22bfdcbbbc98610ea139292
advanced-cluster-security/rhacs-collector-rhel8@sha256:448a998a210258ac8e79100afe78c17c3056e7f5036f1c3b75dfb3d5447e08af
advanced-cluster-security/rhacs-collector-slim-rhel8@sha256:6364c2c2bdc18c786186fb7762b9629011e4005d0e3102421aee2f4dd2d46076
advanced-cluster-security/rhacs-main-rhel8@sha256:838ca64d6e346063dd8981ee0c203a1fb2383ae55eebd7c5764734196b58c238
advanced-cluster-security/rhacs-operator-bundle@sha256:47b245930d791c20f24b98822c18a35dbbfb523787fbf06d438c788614b69964
advanced-cluster-security/rhacs-rhel8-operator@sha256:c322c062be62eb946726745e24fd88c63d84158d2c23f303c3891f83476e7f47
advanced-cluster-security/rhacs-roxctl-rhel8@sha256:a168a18b427183353e01a71ab6b51d9a47d58fc64807a020cefdb81f6c65144e
advanced-cluster-security/rhacs-scanner-db-rhel8@sha256:87a958cbc49d54a37f24c8208ab8283a1319637886e72b4a975305e64f01ef62
advanced-cluster-security/rhacs-scanner-db-slim-rhel8@sha256:6bb7b099e1b6a10ac9aa040b5c108f84b533481c597c59ec5eb45b187bd9d4d6
advanced-cluster-security/rhacs-scanner-rhel8@sha256:f75d5fa4bf18611949fe711e38e8b066eae6e7d65c9175cd84aebbcdbedc4dee
advanced-cluster-security/rhacs-scanner-slim-rhel8@sha256:0f45a72d7e8aee18e3f74fd39ca256ff1b391a815718fc461b3a99351a9bcc7b
advanced-cluster-security/rhacs-scanner-v4-db-rhel8@sha256:d8c23862990cbae23ed4d5eef67bf2280ce15aaed8ca3e9928aa93115a7e775c
advanced-cluster-security/rhacs-scanner-v4-rhel8@sha256:f94a79c0c5a5ca5c32abbc4c578778969d5b8d8b5850cfea66fd223fbc13b61b

x86_64

advanced-cluster-security/rhacs-central-db-rhel8@sha256:ab2f6c62482cd115f8501b5bd43213d2b077a54ede7f618cdaca6bca93d35e8f
advanced-cluster-security/rhacs-collector-rhel8@sha256:8889899509c9380397dc220c3c4a0eb12d8ab4dc819236faff2fbeb9a343dbda
advanced-cluster-security/rhacs-collector-slim-rhel8@sha256:49df5dfb1306d8096e44f0eb252239a4247542a5c9f86b15fe906ed6909a95d4
advanced-cluster-security/rhacs-main-rhel8@sha256:c953c35949ab1dae29ebe9a29af9129f64dae91fc8df01eb48e3f24dd839e53d
advanced-cluster-security/rhacs-operator-bundle@sha256:0584255cd3289c421454544b7eaa7d13be85c0572ddba1731cb86137195232d6
advanced-cluster-security/rhacs-rhel8-operator@sha256:e37d96b5f1d79e104b6fd55387a401d4c06dcf853ccc0befecb97db1f74323f4
advanced-cluster-security/rhacs-roxctl-rhel8@sha256:76ecc8872c279fb4f2b00275f0b4d3523b8e79cc6ce376b6210786cf5de79d69
advanced-cluster-security/rhacs-scanner-db-rhel8@sha256:ed89f8cb2d43d24e791dc281d9aa9de911cdcd2bd5bdc64e6f6407867a8509dd
advanced-cluster-security/rhacs-scanner-db-slim-rhel8@sha256:2bbee863681132a8c6dcd8cc7bd6b26441f07c660415ebd2e81f433612623e93
advanced-cluster-security/rhacs-scanner-rhel8@sha256:785b137bd40ee157bc1da3583dc27eee1536315772a913a9fc8b7742cc621162
advanced-cluster-security/rhacs-scanner-slim-rhel8@sha256:61797b6be693ad50d7c996d11b7c73c63847abe2a1c9856821599221ab4e6efb
advanced-cluster-security/rhacs-scanner-v4-db-rhel8@sha256:1334101be6d921c05d43972b89e8508584dd509582a1969367785c48837ff4cf
advanced-cluster-security/rhacs-scanner-v4-rhel8@sha256:173a157904b13050e0b3fe143c030113ca32c8d9b8f72b6f2af8320e6de22123

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility