- Issued:
- 2024-12-02
- Updated:
- 2024-12-02
RHSA-2024:10665 - Security Advisory
Synopsis
Low: ACS 4.4 enhancement and security update
Type/Severity
Security Advisory: Low
Topic
Updated images are now available for Red Hat Advanced Cluster Security (RHACS). The updated image includes a security fix.
Description
This release of ACS 4.4.7 provides the following security fix:
- cross-spawn: Regular expression denial of service (CVE-2024-21538)
Solution
If you are using an earlier version of RHACS 4.4, you are advised to upgrade to this patch release 4.4.7.
Affected Products
- Red Hat Advanced Cluster Security for Kubernetes 4 x86_64
- Red Hat Advanced Cluster Security for Kubernetes for IBM Z and LinuxONE 4 s390x
- Red Hat Advanced Cluster Security for Kubernetes for IBM Power, little endian 4 ppc64le
Fixes
- BZ - 2324550 - CVE-2024-21538 cross-spawn: regular expression denial of service
- ROX-27071 - Release RHACS 4.4.7
ppc64le
advanced-cluster-security/rhacs-central-db-rhel8@sha256:f9116251fdcebcd63db2d999f22b2d7440b73fe3dae6fd090f0ca05167aee231 |
advanced-cluster-security/rhacs-collector-rhel8@sha256:ab4235c26d67b030c9c68c093316d973ecc6db1f136f198abbbf50009f0fb63e |
advanced-cluster-security/rhacs-collector-slim-rhel8@sha256:fed529e65fd89cdd06ac919b9226cc6e2c6c84403378805d0fdcbee3eca88aff |
advanced-cluster-security/rhacs-main-rhel8@sha256:c4944edf885611bc28a67fa141db9189c449879eee99929194671e7b9af668c5 |
advanced-cluster-security/rhacs-operator-bundle@sha256:f1c7a8491aca5f61309443be7a0762b66960ddbdaa2a1925e42b6675b1026b44 |
advanced-cluster-security/rhacs-rhel8-operator@sha256:3d2f4a5b71438a92cc65b7bb5763886382aaa7310cbc120ff64d4ae6adf3c38a |
advanced-cluster-security/rhacs-roxctl-rhel8@sha256:e44891cd8866eddfaf9b7787874f5c22ec21fbd9b3485bb51554e761730764db |
advanced-cluster-security/rhacs-scanner-db-rhel8@sha256:32e74fc14962194e84930ac9d483def0b73b46aec3f4e53226e1585543a09ada |
advanced-cluster-security/rhacs-scanner-db-slim-rhel8@sha256:762049ef08361a1d93dd9e03359691e21167d858ea32d4a67e5015e2325d02f1 |
advanced-cluster-security/rhacs-scanner-rhel8@sha256:56add4d2435af20bbf6605424aa8757a94e47f7ba4afd7521d4e87303ac915cc |
advanced-cluster-security/rhacs-scanner-slim-rhel8@sha256:9f9cc3101f79620e942d471d3a5d08fb8b466a47bbcbf963bb5c1c0f336a2f1c |
advanced-cluster-security/rhacs-scanner-v4-db-rhel8@sha256:1f9ab80dd80e07905f432ecec4925a3171b562cacd7df34fdeb5659cb5e31313 |
advanced-cluster-security/rhacs-scanner-v4-rhel8@sha256:d94986a789da892004922523c70526619862c556e3efc7c2ff03be3ce739960f |
s390x
advanced-cluster-security/rhacs-central-db-rhel8@sha256:138f8a8a15a155c2cc218ece00f816198bc1f701b22bfdcbbbc98610ea139292 |
advanced-cluster-security/rhacs-collector-rhel8@sha256:448a998a210258ac8e79100afe78c17c3056e7f5036f1c3b75dfb3d5447e08af |
advanced-cluster-security/rhacs-collector-slim-rhel8@sha256:6364c2c2bdc18c786186fb7762b9629011e4005d0e3102421aee2f4dd2d46076 |
advanced-cluster-security/rhacs-main-rhel8@sha256:838ca64d6e346063dd8981ee0c203a1fb2383ae55eebd7c5764734196b58c238 |
advanced-cluster-security/rhacs-operator-bundle@sha256:47b245930d791c20f24b98822c18a35dbbfb523787fbf06d438c788614b69964 |
advanced-cluster-security/rhacs-rhel8-operator@sha256:c322c062be62eb946726745e24fd88c63d84158d2c23f303c3891f83476e7f47 |
advanced-cluster-security/rhacs-roxctl-rhel8@sha256:a168a18b427183353e01a71ab6b51d9a47d58fc64807a020cefdb81f6c65144e |
advanced-cluster-security/rhacs-scanner-db-rhel8@sha256:87a958cbc49d54a37f24c8208ab8283a1319637886e72b4a975305e64f01ef62 |
advanced-cluster-security/rhacs-scanner-db-slim-rhel8@sha256:6bb7b099e1b6a10ac9aa040b5c108f84b533481c597c59ec5eb45b187bd9d4d6 |
advanced-cluster-security/rhacs-scanner-rhel8@sha256:f75d5fa4bf18611949fe711e38e8b066eae6e7d65c9175cd84aebbcdbedc4dee |
advanced-cluster-security/rhacs-scanner-slim-rhel8@sha256:0f45a72d7e8aee18e3f74fd39ca256ff1b391a815718fc461b3a99351a9bcc7b |
advanced-cluster-security/rhacs-scanner-v4-db-rhel8@sha256:d8c23862990cbae23ed4d5eef67bf2280ce15aaed8ca3e9928aa93115a7e775c |
advanced-cluster-security/rhacs-scanner-v4-rhel8@sha256:f94a79c0c5a5ca5c32abbc4c578778969d5b8d8b5850cfea66fd223fbc13b61b |
x86_64
advanced-cluster-security/rhacs-central-db-rhel8@sha256:ab2f6c62482cd115f8501b5bd43213d2b077a54ede7f618cdaca6bca93d35e8f |
advanced-cluster-security/rhacs-collector-rhel8@sha256:8889899509c9380397dc220c3c4a0eb12d8ab4dc819236faff2fbeb9a343dbda |
advanced-cluster-security/rhacs-collector-slim-rhel8@sha256:49df5dfb1306d8096e44f0eb252239a4247542a5c9f86b15fe906ed6909a95d4 |
advanced-cluster-security/rhacs-main-rhel8@sha256:c953c35949ab1dae29ebe9a29af9129f64dae91fc8df01eb48e3f24dd839e53d |
advanced-cluster-security/rhacs-operator-bundle@sha256:0584255cd3289c421454544b7eaa7d13be85c0572ddba1731cb86137195232d6 |
advanced-cluster-security/rhacs-rhel8-operator@sha256:e37d96b5f1d79e104b6fd55387a401d4c06dcf853ccc0befecb97db1f74323f4 |
advanced-cluster-security/rhacs-roxctl-rhel8@sha256:76ecc8872c279fb4f2b00275f0b4d3523b8e79cc6ce376b6210786cf5de79d69 |
advanced-cluster-security/rhacs-scanner-db-rhel8@sha256:ed89f8cb2d43d24e791dc281d9aa9de911cdcd2bd5bdc64e6f6407867a8509dd |
advanced-cluster-security/rhacs-scanner-db-slim-rhel8@sha256:2bbee863681132a8c6dcd8cc7bd6b26441f07c660415ebd2e81f433612623e93 |
advanced-cluster-security/rhacs-scanner-rhel8@sha256:785b137bd40ee157bc1da3583dc27eee1536315772a913a9fc8b7742cc621162 |
advanced-cluster-security/rhacs-scanner-slim-rhel8@sha256:61797b6be693ad50d7c996d11b7c73c63847abe2a1c9856821599221ab4e6efb |
advanced-cluster-security/rhacs-scanner-v4-db-rhel8@sha256:1334101be6d921c05d43972b89e8508584dd509582a1969367785c48837ff4cf |
advanced-cluster-security/rhacs-scanner-v4-rhel8@sha256:173a157904b13050e0b3fe143c030113ca32c8d9b8f72b6f2af8320e6de22123 |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.