Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:5951 - Security Advisory
Issued:
2024-08-28
Updated:
2024-08-28

RHSA-2024:5951 - Security Advisory

  • Overview
  • Updated Images

Synopsis

Low: OpenShift Virtualization 4.15.5 Images

Type/Severity

Security Advisory: Low

Topic

Red Hat OpenShift Virtualization release 4.15.5 is now available with updates to packages and images that fix several bugs and add enhancements.

Red Hat Product Security has rated this update as having a security impact
of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available for each vulnerability from
the CVE link(s) in the References section.

Description

OpenShift Virtualization is Red Hat's virtualization solution designed for Red Hat OpenShift Container Platform.

This advisory contains OpenShift Virtualization 4.15.5 images.

Security Fix(es):

  • containers/image: digest type does not guarantee valid type

(CVE-2024-3727)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page(s) listed in the References section.

Solution

Before applying this update, make sure all previously released errata relevant to your system have been applied.

For details on how to apply this update, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Container Native Virtualization 4.15 for RHEL 9 x86_64

Fixes

  • BZ - 2272951 - CVE-2024-31420 cnv: DoS through repeatedly calling vm-dump-metrics until virt handler crashes
  • BZ - 2274767 - CVE-2024-3727 containers/image: digest type does not guarantee valid type
  • CNV-44972 - [4.15] When the dataImportCronSource format changes from snap->pvc cloning stops working
  • CNV-45084 - [4.15] VMExport download VM manifest - has both "source" and "sourceRef" - results in cloning a DataSource instead of exporting a source PVC
  • CNV-44852 - Pending changes for boot disk when creating VM from instance type
  • CNV-44894 - VMware warm migration fails to open the snapshot with VDDK Error 13 (You do not have access rights to this file)

CVEs

  • CVE-2021-47383
  • CVE-2023-52448
  • CVE-2023-52651
  • CVE-2023-52771
  • CVE-2023-52864
  • CVE-2024-1737
  • CVE-2024-1975
  • CVE-2024-3727
  • CVE-2024-6345
  • CVE-2024-21823
  • CVE-2024-26855
  • CVE-2024-26897
  • CVE-2024-27046
  • CVE-2024-27052
  • CVE-2024-35789
  • CVE-2024-35845
  • CVE-2024-35852
  • CVE-2024-35907
  • CVE-2024-35937
  • CVE-2024-36922
  • CVE-2024-36941
  • CVE-2024-36971
  • CVE-2024-37370
  • CVE-2024-37371
  • CVE-2024-37891
  • CVE-2024-38428
  • CVE-2024-38538
  • CVE-2024-38555
  • CVE-2024-38556
  • CVE-2024-38586
  • CVE-2024-38627

References

  • https://access.redhat.com/security/updates/classification/#low

aarch64

container-native-virtualization/aaq-controller-rhel9@sha256:28a9a211cdec97b7da40baa2096e879c60cd6ee82f0f18faaf68dec09488c061
container-native-virtualization/aaq-operator-rhel9@sha256:a72f8f880fcf62fb9a00482e1f5fc1fb674084a1f0db01c6a6349c6419ad55ad
container-native-virtualization/aaq-server-rhel9@sha256:d71a5116890efe52ed0ac90b5f20b833dfb451441490b8e05018beb80157302e
container-native-virtualization/bridge-marker-rhel9@sha256:df0b66cf8d9e70fa75a105eba9f1c50f1eadfda68ce6384c008a5ef36e3155c5
container-native-virtualization/cluster-network-addons-operator-rhel9@sha256:593f09a293fa7422cc257715dc97d76a691dc4338ac929d2c0d0622016833200
container-native-virtualization/cnv-containernetworking-plugins-rhel9@sha256:f3e255095989592e96a8c142abb54d06556e48a9af7c5737c50c1c8b8670cb0b
container-native-virtualization/cnv-must-gather-rhel9@sha256:6a619546331a13f81077f7e416a591eaae461167ae30857056fd48afdbcefcc3
container-native-virtualization/hco-bundle-registry-rhel9@sha256:9466629ce617bcc8786d8d382dce2569d1069fdab28f6a2671a5392895798f6d
container-native-virtualization/hostpath-csi-driver-rhel9@sha256:88fe0843acd2bb9c558083843efe989264ecaf780de1a4676096dd2c5aa243aa
container-native-virtualization/hostpath-provisioner-operator-rhel9@sha256:b225caa085288ee4c45f5d293ee97b8745bce0aecf7a84134d8491296e6b383a
container-native-virtualization/hostpath-provisioner-rhel9@sha256:dc94d997ea034fca8f291e331188cdef27260157f729279dcf675c08b00b1781
container-native-virtualization/hyperconverged-cluster-operator-rhel9@sha256:671f03778d8c2a74f5e3539beae72a170ac219e5cd70c1a5db2d9b876fca8090
container-native-virtualization/hyperconverged-cluster-webhook-rhel9@sha256:bd3e737c04d04d9621d37e088d7cc9a0e2a8da52d48479bbf252eced42d23cee
container-native-virtualization/kubemacpool-rhel9@sha256:ee0be4213eedce5a96c7ae8be7e8388399f0a5ea89fcacce58918fdffbb2ca7d
container-native-virtualization/kubesecondarydns-rhel9@sha256:1a1c0572e447b2cd80ef2527b0505cb34d350457f191bcf91dbefba7601ab223
container-native-virtualization/kubevirt-apiserver-proxy-rhel9@sha256:c3f82e332037a82f38906f83e8a733e934554959f09c0603e28ad1696db9c320
container-native-virtualization/kubevirt-common-instancetypes-rhel9@sha256:a66936fa2f6a8f06b0083648eb718990990c76534aa75ba417f05425406bf807
container-native-virtualization/kubevirt-console-plugin-rhel9@sha256:3a31da592f3f51cfcbabc06116297477334ded548733d517a1fada201ec90828
container-native-virtualization/kubevirt-dpdk-checkup-rhel9@sha256:ca111b56cf3999e012f27c992fb7ac909d37135bc634a514891ae59c7d2d5fd5
container-native-virtualization/kubevirt-realtime-checkup-rhel9@sha256:5fbe1d4e053f5a569604d9d3eb660bd586a9137c233d9986b5027c7fd5c5393b
container-native-virtualization/kubevirt-ssp-operator-rhel9@sha256:614f4d2497abd2e4e54b318a98832fa2677dcfa2c2fe47b56bc9bd19bbbfe15a
container-native-virtualization/kubevirt-storage-checkup-rhel9@sha256:2da093dc387c7f58a2f22141412c9719b3528918cc0ce8210777b1eb9f393b02
container-native-virtualization/kubevirt-tekton-tasks-create-datavolume-rhel9@sha256:891cbe951d24c9e72d51413c1e9a4177c500955818e03bc1f48c6cac2bc52536
container-native-virtualization/kubevirt-tekton-tasks-disk-virt-customize-rhel9@sha256:54483dcfc3e2ed587ec8ee157b43b26f7f63d19f24b38c669c67e4a2c2a92df6
container-native-virtualization/kubevirt-template-validator-rhel9@sha256:f2ec554184f9181d93f0cdfc6bb2d493ef7a42df42b4e34a879da1a4ecf631d7
container-native-virtualization/libguestfs-tools-rhel9@sha256:d78269890e1a7ed7c3d7050c30b49904c940e554c012a4c851cc3fe9507e5ff5
container-native-virtualization/mtq-controller-rhel9@sha256:3683ac5ba17584f2b773d42020b52bd83ba5913292d26d4c07d80cb27749f97d
container-native-virtualization/mtq-lock-server-rhel9@sha256:551b06bdd0f53732245c2a4001b970ffa0efea24fcd25afd30b2e1424ea67f91
container-native-virtualization/mtq-operator-rhel9@sha256:3d677d8a93ad48c1352d3d6ea73120573e5317a7ff7d251d07617e0debd2f2d5
container-native-virtualization/multus-dynamic-networks-rhel9@sha256:5d41a388b703e00cf9d5e804476fdb9c253ec651a7784d3547e8e909600c1724
container-native-virtualization/ovs-cni-plugin-rhel9@sha256:49515378392fdc91d3fea414e92fef5220d225c7b04f551d3d274c2057873576
container-native-virtualization/pr-helper-rhel9@sha256:dc48931c749e44fa2caf0c606daf31012a166722e06de50eb6a7aea15adda5d9
container-native-virtualization/virt-api-rhel9@sha256:f7c35081c706a381e8d9f7e6e1c3d82c40756013c04a5b2deff32f3b4b182c27
container-native-virtualization/virt-artifacts-server-rhel9@sha256:836bd25b9bea006e884d71ec0b67f78660320e071308fc6fe99e9347367cbba5
container-native-virtualization/virt-cdi-apiserver-rhel9@sha256:26a3b7099d410d6c88e4000ff874485a3b7cc66bfd658960bd0c8197be0cd1ac
container-native-virtualization/virt-cdi-cloner-rhel9@sha256:01418b8b2d92069d740cfebfbfec6516259ea16307e62f19de6b1ca83521aef7
container-native-virtualization/virt-cdi-controller-rhel9@sha256:48e404b86e9093175115f751969a5a7d1625810aa5c96fec6151db7b302ade1e
container-native-virtualization/virt-cdi-importer-rhel9@sha256:21c29b5b441d0d514e1af1b867e50ce4f1c616642d9fe299a4625436ca6942ae
container-native-virtualization/virt-cdi-operator-rhel9@sha256:3e31b3163bf3dc5ea3779c8013bac4e5e1bf38472b17b5d0d4468a52e2aaeeca
container-native-virtualization/virt-cdi-uploadproxy-rhel9@sha256:97812c848c174a5188757cd10950851eb71756e8d44e744d18ad1b876cf68d46
container-native-virtualization/virt-cdi-uploadserver-rhel9@sha256:929f498d6ed9e76ca91a692b3accffc43e4aee7ad594173dfbd3b12c152337a5
container-native-virtualization/virt-controller-rhel9@sha256:8f512e2057d58ed7f7840d92319c9600305dc541f97673ba6fba1dd88a80176e
container-native-virtualization/virt-exportproxy-rhel9@sha256:409e949ddcfe7e0c38ddfe2c33748e7ce3f75e7196f7802aaedfe0cf927f2e3b
container-native-virtualization/virt-exportserver-rhel9@sha256:0898f43c38b98a2e99d5e14004fb4ce9eabe8cca3f318859830c3abc85db1453
container-native-virtualization/virt-handler-rhel9@sha256:f920a42d20bf7add6653af022720b3405998b8da006dfb35d533c05aecc77fbe
container-native-virtualization/virt-launcher-rhel9@sha256:b40ca2f8d3c767ce535b16476682a0e0dbff30215fd19ca93591725208df8602
container-native-virtualization/virt-operator-rhel9@sha256:f9b57fa4662013173bdf6d2eec6a2f83a869ad3eab0e9caf129d858737c754e8
container-native-virtualization/virtio-win-rhel9@sha256:baf9dbcd08ccfdcd56be45c9f8f48a317521d94d17aa5176676b900e1e2e7f80
container-native-virtualization/vm-console-proxy-rhel9@sha256:38fb5b02fb10dc30052c881aa0aeb297fc6b291f5aebe12bc5e3df66c64e94c1
container-native-virtualization/vm-network-latency-checkup-rhel9@sha256:bd60b1137e37a9af665928961286f70fc625b01deacbe396239fc66db7fbe0e4

x86_64

container-native-virtualization/aaq-controller-rhel9@sha256:a3be4be46dbde0a95596ccd5a8039d4bad56e014aa0120e8032423be6c16615a
container-native-virtualization/aaq-operator-rhel9@sha256:9e96a54223b6fb64f43284706ee5d6fc01427416aedcb503cf994ecce73e9440
container-native-virtualization/aaq-server-rhel9@sha256:8fbc415c770572995cd802c4e08455ea6852d47b92c893438664529119e4c9bf
container-native-virtualization/bridge-marker-rhel9@sha256:eaf9845c9fffa6d60dabd64dc84eb3c19f80762d49417a06698b70585c29886b
container-native-virtualization/cluster-network-addons-operator-rhel9@sha256:5a5167c5acb05473cf93f16cfbcba486f56670444b543e61a4a41ebbdf51e199
container-native-virtualization/cnv-containernetworking-plugins-rhel9@sha256:38ae02c00a65057ad33b14c554d4e9edb9a45b8bb866eacda4d5ad9368c6f005
container-native-virtualization/cnv-must-gather-rhel9@sha256:f9e3f7096a874cc1086da3da8f69f799bb1aa401dae608e248d8e2af7654e4dd
container-native-virtualization/hco-bundle-registry-rhel9@sha256:c60e81738876ece0fc5acff742fa0b360db1ec87d4be030ebc6459a2c863b339
container-native-virtualization/hostpath-csi-driver-rhel9@sha256:b0571e5dc5f9a19eebb2efd94bed896a103d66056dcbcab006fdb8cfaa99fb3a
container-native-virtualization/hostpath-provisioner-operator-rhel9@sha256:90b08535c22527423c4fffdd32d0c80f909420d726ac40781e5e7b387320c5e3
container-native-virtualization/hostpath-provisioner-rhel9@sha256:981199581e77a499c6b3a5e830214511c1de69fc371285f5ba42fbca5d3d06f2
container-native-virtualization/hyperconverged-cluster-operator-rhel9@sha256:7a4cfffceb261da2a1b02d4fdcaa200614470191ba4014023e27be7ba34f3708
container-native-virtualization/hyperconverged-cluster-webhook-rhel9@sha256:6e5bd7f46424f25b67815575a52baaedf89535a4a66189a8194f5ed65f6bcc9a
container-native-virtualization/kubemacpool-rhel9@sha256:14af89eba937218eea87f4bb4f3bf6aee04848b11993e2c60180b1f0bd7dbb49
container-native-virtualization/kubesecondarydns-rhel9@sha256:fbda827a925cfd38e3c96c1ca8b89b904e0e47fee90f8152fc55dddc5d0a8cdb
container-native-virtualization/kubevirt-apiserver-proxy-rhel9@sha256:7037a86df3f046d5316385c8c0fe9d75374ba3b9219ca07d13a5e1096c68d207
container-native-virtualization/kubevirt-common-instancetypes-rhel9@sha256:1b81470f68a380b5fd719f6f48258a0faac00384f7454326ab489930d95b28fc
container-native-virtualization/kubevirt-console-plugin-rhel9@sha256:068302b107f49bbb549c4399c91ee04f7f07a1d1545dab12d23e73e46e7af3fb
container-native-virtualization/kubevirt-dpdk-checkup-rhel9@sha256:33e34de362ef531f5c1fde622c62a712827ce273a7da6089b83f06b49bb22891
container-native-virtualization/kubevirt-realtime-checkup-rhel9@sha256:8dfe32aa74c060498b0de387bac635b18e7225b5df3aa706d9f8641aadd2aaf6
container-native-virtualization/kubevirt-ssp-operator-rhel9@sha256:71a1e86a7989653920b41ac00bd9435de42aad4c7d78ff447098e882edfff6a6
container-native-virtualization/kubevirt-storage-checkup-rhel9@sha256:841332d8501e6da18f848f8882e284e43173c6964d3709ba53bc6896264e7e70
container-native-virtualization/kubevirt-tekton-tasks-create-datavolume-rhel9@sha256:1696a21b9ac9ac5b181222f50a1e50382ea3654df98c5242eff156bfbc7707dc
container-native-virtualization/kubevirt-tekton-tasks-disk-virt-customize-rhel9@sha256:adb7df38d8b102412034ef62c7338ed210740be520ed95d85634cbb31cdcd5b5
container-native-virtualization/kubevirt-template-validator-rhel9@sha256:33bb76edad21992261dd8a665308918704ef4a2a425df99574ba9fd1b8fd30b3
container-native-virtualization/libguestfs-tools-rhel9@sha256:b276ad4f40ae82493f4e4321a39997dda59bd02fe9116e0ead5bf8f44bd59cdd
container-native-virtualization/mtq-controller-rhel9@sha256:646d2a4725d2f5d333c93339f4411b0c6b3584b698c1b17a6914c139931fbb54
container-native-virtualization/mtq-lock-server-rhel9@sha256:2f15434f24ea3875fa014c927ba775d00850d95a430e2e7cfe53344eefe53389
container-native-virtualization/mtq-operator-rhel9@sha256:dff6a70d1b61f0228922a1cfc054ab36e4e7acba9957a0f105d7d33acf711772
container-native-virtualization/multus-dynamic-networks-rhel9@sha256:4d4c0b68bc1feece157fceb0e8e1e52614e4432d24fa3307eadd78fa0ead23fb
container-native-virtualization/ovs-cni-plugin-rhel9@sha256:9de2883f99a5ec5b0e7d702eeff1ba4993f34be8c7fc9c51e09cf838439d7fba
container-native-virtualization/pr-helper-rhel9@sha256:19417a86d991d6cf0224929bc7f4aee5f02967fd082c8b2dd6f8d0e784441b00
container-native-virtualization/virt-api-rhel9@sha256:d8711c5a58ad952d743d1dc4d31887fb76016826bdc6f64de81c30eafd0de1c2
container-native-virtualization/virt-artifacts-server-rhel9@sha256:671db0ae6e8925190f430c1801acc47a0c8bdffbaafadc23cf3c6b0aa0371b0d
container-native-virtualization/virt-cdi-apiserver-rhel9@sha256:78d9c18f73a4310eb7604e8bb17954ef1c18b82c9b8ccc2757d8b44ff6c9c261
container-native-virtualization/virt-cdi-cloner-rhel9@sha256:4f091b5f1951406801c82e8a679a16e9dbd9eea15d6d64f92c3d57bcea59b737
container-native-virtualization/virt-cdi-controller-rhel9@sha256:5f4b2ae9fd952882dcda39c5777de4fe285fb4be61908354a5153c99c602c15e
container-native-virtualization/virt-cdi-importer-rhel9@sha256:769682a1905685af05d3567850339ccd7be4a5587b032104c27572a46a310eaf
container-native-virtualization/virt-cdi-operator-rhel9@sha256:712f4fb2a11fa48673dc46bcd56bf46a9a91d1a57c4d61f9b8820a0e19a0c504
container-native-virtualization/virt-cdi-uploadproxy-rhel9@sha256:d2eca554006b26085db67b070688266363e3f9c0b1c00500dcb70f8659062dfa
container-native-virtualization/virt-cdi-uploadserver-rhel9@sha256:f5515c315d8603e4ac6cb30e2d03ef69e55e1d393652d968fbc41f2482db1239
container-native-virtualization/virt-controller-rhel9@sha256:bbbbe86b203c382395faab9b64fd6ae1f1b9a779ebc6331a62a3ab22450d489f
container-native-virtualization/virt-exportproxy-rhel9@sha256:6c0f685970ac3c51543e1a037552114a0726e19f7efafe996f6820c2c256f6ec
container-native-virtualization/virt-exportserver-rhel9@sha256:f17301915b2368301523c4bfaa36b95733bd97e78cfcfbaa2cc7ca37b60becb3
container-native-virtualization/virt-handler-rhel9@sha256:e106992b403ebba68d4b0d4830ac4669c44b047a4750fcabfb52ba1dbaaf4806
container-native-virtualization/virt-launcher-rhel9@sha256:eddc9b94f741526d1daa70077d6a81d970682f3c64e75e04b45655a50c659da5
container-native-virtualization/virt-operator-rhel9@sha256:f7dea8a5f0928e691ff88a2b4857f85f589c5d4e02063c902e160726cf584a16
container-native-virtualization/virtio-win-rhel9@sha256:8987c76915fcf3bac4a7b6b895d3fdbc3c9996dd70af00739b4cc937821cb332
container-native-virtualization/vm-console-proxy-rhel9@sha256:d1b6271719e024c23a83b6a0c49cfa57b283ccf45cf04086995e44579c022e98
container-native-virtualization/vm-network-latency-checkup-rhel9@sha256:7aea8fab750378fcbeac3377333a1ab6b57de014bf6791e088c8e8a6a33733ad

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility