Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:2633 - Security Advisory
Issued:
2024-05-01
Updated:
2024-05-01

RHSA-2024:2633 - Security Advisory

  • Overview
  • Updated Images

Synopsis

Important: updated rhceph-6.1 container image

Type/Severity

Security Advisory: Important

Topic

Updated container image for Red Hat Ceph Storage 6.1 is now available in the Red Hat Ecosystem Catalog.

Description

Red Hat Ceph Storage is a scalable, open, software-defined storage platform that combines the most stable version of the Ceph storage system with a Ceph management platform, deployment utilities, and support services.

This updated container image is based on Red Hat Ceph Storage 6.1 and Red Hat Enterprise Linux.

Space precludes documenting all of these changes in this advisory. Users are directed to the Red Hat Ceph Storage Release Notes for information on the most significant of these changes:

https://access.redhat.com/documentation/en-us/red_hat_ceph_storage/6.1/html/ release_notes/index

All users of Red Hat Ceph Storage are advised to pull these new images from the Red Hat Ecosystem catalog.

Solution

Before applying this update, make sure all previously released errata relevant to your system have been applied.

For details on how to apply this update, refer to:

https://access.redhat.com/articles/11258

and

https://access.redhat.com/documentation/en-us/red_hat_ceph_storage/6

For supported configurations, refer to:

https://access.redhat.com/articles/1548993

Affected Products

  • Red Hat Enterprise Linux for x86_64 9 x86_64
  • Red Hat Enterprise Linux for x86_64 8 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 9 s390x
  • Red Hat Enterprise Linux for Power, little endian 9 ppc64le
  • Red Hat Enterprise Linux for Power, little endian 8 ppc64le

Fixes

  • BZ - 2242803 - CVE-2023-44487 HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)
  • BZ - 2268486 - CVE-2024-1442 grafana: Improper priviledge managent for users with data source permissions
  • BZ - 2272988 - Upgrade to newer versions of table , graph, piechart panels in grafana dashboards for grafana 10

CVEs

  • CVE-2023-44487
  • CVE-2023-49569
  • CVE-2023-52425
  • CVE-2024-1442
  • CVE-2024-28757

References

  • https://access.redhat.com/security/updates/classification/#important
  • https://access.redhat.com/security/vulnerabilities/RHSB-2023-003

ppc64le

rhceph/keepalived-rhel9@sha256:ecdabdca39cb872d0cef52b0e5c41b370eb04bd982fdb1b711de9003418a30f2
rhceph/rhceph-6-dashboard-rhel9@sha256:077eed7e75034ed98d1d47854031e9f99277d6445165b4256c52ba3116c78a99
rhceph/rhceph-6-rhel9@sha256:402140159dc4c78dca690a44491a10c51a33fed587d1855b8a781a5e8cf99dfc
rhceph/rhceph-haproxy-rhel9@sha256:b497b8004a2057c813d95cb35ba30980ef8b40f94d31b9307aa1fc4bbbe35542
rhceph/rhceph-promtail-rhel9@sha256:4f37df3ad28df39a044c0e4575299acaed7301c4bdccd6f608b8775a4a0ad513
rhceph/snmp-notifier-rhel9@sha256:9a84f9e7a9999fadd11fd4091f0e29c99742177a71b360cf930b3ff202bfcc2f

s390x

rhceph/keepalived-rhel9@sha256:f6fc1dd62eaa7a09e878d2fde3f39f6c32db399d14554412ec09c2eb09a65c7b
rhceph/rhceph-6-dashboard-rhel9@sha256:ac73cc9d02509b10de7a49a54762c6ad249aaf079fbd4720e97a2892bb342110
rhceph/rhceph-6-rhel9@sha256:fba5014ee58c3a8f39bb7967c4a6793e96382f946aff07a0d73038c36db8c1c6
rhceph/rhceph-haproxy-rhel9@sha256:7a5642eb5fe90cf6a1b73bedce8afc61f9d7c1d3a45e82ccc56c8ca79a455c45
rhceph/rhceph-promtail-rhel9@sha256:d1b5e1feef37c5212c73fb3ffb4ed51ccafcb1bd9fa99cefc65f937f998852fb
rhceph/snmp-notifier-rhel9@sha256:414bfdfdd4af59dd1388a407e40e4b523180bac9266088650a63b96a4b70b391

x86_64

rhceph/keepalived-rhel9@sha256:2468c33f5af3403df5801d95667767dada47d2a4bfeb8aeda4e920a8e6142fb4
rhceph/rhceph-6-dashboard-rhel9@sha256:fe54e5bfb8d49393d1fac21755ad1017c5b7c34c23dec18563170396f81d15a9
rhceph/rhceph-6-rhel9@sha256:0e8fcaf340946dd2881027da80d977066726f5f2bdd454c2b61bcb8ce5aba58b
rhceph/rhceph-haproxy-rhel9@sha256:6f8c1edbe9702894290cd87044c1a2965d5b70bd534b19dcae6ade98c5c2b0fd
rhceph/rhceph-promtail-rhel9@sha256:2cfe8ff27053b918fb4d7bd9d0e393eaed4df688206559dd98ffa604a28bf15c
rhceph/snmp-notifier-rhel9@sha256:da2298ff218ec5a827501ef8de531d00e00358c9b1a34a55752fd328fae61b5a

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility