Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:7237 - Security Advisory
Issued:
2024-09-26
Updated:
2024-09-26

RHSA-2024:7237 - Security Advisory

  • Overview
  • Updated Images

Synopsis

Moderate: Logging for Red Hat OpenShift - 5.8.13

Type/Severity

Security Advisory: Moderate

Topic

Logging for Red Hat OpenShift - 5.8.13

Description

Logging for Red Hat OpenShift - 5.8.13

Solution

For OpenShift Container Platform 4.13 see the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this errata update:

https://docs.openshift.com/container-platform/4.13/release_notes/ocp-4-13-release-notes.html

For Red Hat OpenShift Logging 5.8, see the following instructions to apply this update:

https://docs.openshift.com/container-platform/4.13/logging/cluster-logging-upgrading.html

Affected Products

  • Logging Subsystem for Red Hat OpenShift for ARM 64 5 for RHEL 9 aarch64
  • Logging Subsystem for Red Hat OpenShift 5 for RHEL 9 x86_64
  • Logging Subsystem for Red Hat OpenShift for IBM Power, little endian 5 for RHEL 9 ppc64le
  • Logging Subsystem for Red Hat OpenShift for IBM Z and LinuxONE 5 for RHEL 9 s390x

Fixes

  • LOG-5210 - spec.outputs.<output>.http.timeout is not honered when the collector type is fluentd
  • LOG-5966 - Alert for when the Elasticsearch Operator is used with the CLO in 4.16
  • LOG-6103 - Allow Logging 5.9 on OCP 4.17 until 5.9 EOL
  • LOG-6127 - [Logging 5.8.z, Logging 5.9.z]Loki pods are in CrashLoopBackOff when the cluster has FIPS enabled.
  • LOG-6134 - Allow Elasticsearch Operator 5.8 on OCP 4.17 and 4.18 until 5.8 EOL

CVEs

  • CVE-2023-52463
  • CVE-2023-52801
  • CVE-2024-6104
  • CVE-2024-6119
  • CVE-2024-26629
  • CVE-2024-26630
  • CVE-2024-26720
  • CVE-2024-26886
  • CVE-2024-26946
  • CVE-2024-34397
  • CVE-2024-35791
  • CVE-2024-35797
  • CVE-2024-35875
  • CVE-2024-36000
  • CVE-2024-36019
  • CVE-2024-36883
  • CVE-2024-36979
  • CVE-2024-38559
  • CVE-2024-38619
  • CVE-2024-39331
  • CVE-2024-40927
  • CVE-2024-40936
  • CVE-2024-41040
  • CVE-2024-41044
  • CVE-2024-41055
  • CVE-2024-41073
  • CVE-2024-41096
  • CVE-2024-42082
  • CVE-2024-42096
  • CVE-2024-42102
  • CVE-2024-42131
  • CVE-2024-45490
  • CVE-2024-45491
  • CVE-2024-45492

References

  • https://access.redhat.com/security/updates/classification/#moderate

aarch64

openshift-logging/cluster-logging-rhel9-operator@sha256:861124f71dfc6a712557d1fb5a10f202f80e8ff121e2700cb018f8d262225620
openshift-logging/elasticsearch-proxy-rhel9@sha256:a7d41b18c0890f2b73b60b92e68d20bed0b3ffe1ab346b4f05cd97d3ca0c7c06
openshift-logging/elasticsearch-rhel9-operator@sha256:03419f3ba1bee8953b3bdaa2de053ef2d44a6fa3d71eb3bcdecaaac2a273ed07
openshift-logging/elasticsearch6-rhel9@sha256:01ee6cc56e195bcac31847deba37226c572f4b6f9fa7497c3c69931d94adba60
openshift-logging/eventrouter-rhel9@sha256:3db6ea11cfd0063401b95b507dee532262eb654cd25ae651669e49a4dd1fd87f
openshift-logging/fluentd-rhel9@sha256:100763871b0ff46b2abc06100561e0f8c005a70e245cbb964566b2ae84db80ca
openshift-logging/log-file-metric-exporter-rhel9@sha256:93241919e664dba00a76eb9eb9961ea4b4c8f9aa36d643575236f07be66551c4
openshift-logging/logging-curator5-rhel9@sha256:f82384ba5928186a4b4d089a98aaedc8cd44225a76aa1534765fbcaa684bb2e1
openshift-logging/logging-loki-rhel9@sha256:8ccb27a31db3689ef69f758181c3720979d43c87e53450eb7c9abea27121d7e0
openshift-logging/logging-view-plugin-rhel9@sha256:3df70f353b018be62764b51edc9d0115341aa80f99087bd81d9d667a39100e71
openshift-logging/loki-rhel9-operator@sha256:1af042c39371bc0d157bf7b3c5514323939260b477cac76b603a14d4e4d1519e
openshift-logging/lokistack-gateway-rhel9@sha256:d6465f00afa19cb9f510e9193a5539f58794fbc28c12d4ee2e3ad383b5dcfe5b
openshift-logging/opa-openshift-rhel9@sha256:121a93bd92e577bc5a589cc3864c983871f0d9140c24afe02f50ac903c409163
openshift-logging/vector-rhel9@sha256:d81c2a0dc92e5ffc8169769a44e6c5d8b476aadbb375f10ed8034f54a18e042c

ppc64le

openshift-logging/cluster-logging-rhel9-operator@sha256:533f3383bc58c86c621fd4194a92a9fe79c0b298aa9241d7acddf2f0c5f41acc
openshift-logging/elasticsearch-proxy-rhel9@sha256:2a292d6c241f316de45345e34034138318d90773f161d8fdebcff33b1110d2d8
openshift-logging/elasticsearch-rhel9-operator@sha256:643b6aa0779c1e1d88298b2ee62b370f65a7006ddd5d316570eedd74a49cd26d
openshift-logging/elasticsearch6-rhel9@sha256:83dccefd20b2e4d8c2a76644d0346b46b3af86fde07bccbb0b8057fe65fb92be
openshift-logging/eventrouter-rhel9@sha256:6dda829d6d0cebe59f9d931a1bc8a3a9a08d53a460846608558538a831a1841b
openshift-logging/fluentd-rhel9@sha256:e3329f8c6d42c07de17371ac795b8eb282751fbb48a24dd1abd6aa14743af839
openshift-logging/log-file-metric-exporter-rhel9@sha256:192e6f52c57d25e73e1574c7ec6d289d5ab3d689cc7018cb28dfa1532d12a414
openshift-logging/logging-curator5-rhel9@sha256:ae61ad03a2d5c7031ad3e7bb6ccbcb6fe21b115ec7015560bb48e4f84203ea71
openshift-logging/logging-loki-rhel9@sha256:778fc1ffd18b2f891c203d695cc457b248cf99e920248d80d32984b88a115c67
openshift-logging/logging-view-plugin-rhel9@sha256:fdbaa83b4bd1d6a23b40c1c04528d1bbf5b38c7a2d0333b84d635a1b23d3899f
openshift-logging/loki-rhel9-operator@sha256:175ca15c6abd49f5e63931ab0045ba9efe552f700824f4b8984c912aad46e071
openshift-logging/lokistack-gateway-rhel9@sha256:88ac1ea77acfa516778d340030b32255c7006ee4bb61462212e4e3f9effc2ef4
openshift-logging/opa-openshift-rhel9@sha256:7f2b7f7795da404f5c8093e1c6e133bedca9ee4e6fa82569dfeeea4f3ebb29dc
openshift-logging/vector-rhel9@sha256:054ff07804858eca5386b5a0820bfdb8d55103575fdc234e4ddc2574c07094d5

s390x

openshift-logging/cluster-logging-rhel9-operator@sha256:bba377dd7ee50bbc9c258239ecee1614123b69bc2e036debfb14abf625314c16
openshift-logging/elasticsearch-proxy-rhel9@sha256:d2910655ca83e384bc1a38963d7b92bd19026784c48b3acf340d5722a15abc6d
openshift-logging/elasticsearch-rhel9-operator@sha256:2a61e89d80cfd6e1c040647eb321d6fe6bd77f6f766e875a1312577a0ca71ce3
openshift-logging/elasticsearch6-rhel9@sha256:778a3f776e7eacb7a13ff5ab52f7261ab98e0140a8b4576353de4dcc3aa93ee6
openshift-logging/eventrouter-rhel9@sha256:0038db8f6ea9f0e63bee4b0f999c5e1a9bba684510e9305662b425781de36f35
openshift-logging/fluentd-rhel9@sha256:3c64fb8eeb87bcbc51923438046dfe9557d7317642f0780341d55e829882cd98
openshift-logging/log-file-metric-exporter-rhel9@sha256:bfb95d336c63dda6e137d536a506264d2a3553ad396c4f526cb4a03b4e785fa7
openshift-logging/logging-curator5-rhel9@sha256:a87cb11c6991e887263d3cc0e9f428c2fe7b1dbc499c260ce3d91403d36c1948
openshift-logging/logging-loki-rhel9@sha256:bb3c27a86e429295fc42683c7c0a4053845b8c5199d9911525ff1e098818fc2f
openshift-logging/logging-view-plugin-rhel9@sha256:02a944b7b0aee1f319420c31609872f1764078d06cd51fd25c3007063630994f
openshift-logging/loki-rhel9-operator@sha256:196d4a30c1a2c862cede41b31157516e9a503daf3e830975ec4678e5b163c119
openshift-logging/lokistack-gateway-rhel9@sha256:ecc269d2f501016e6528c888dd14fb1576d3b96b30430dcaaccba8b80390a77f
openshift-logging/opa-openshift-rhel9@sha256:4028aa8715d8ae6c07a3374930ce1064531d8d38e57bfb5aefe8e62165768d8f
openshift-logging/vector-rhel9@sha256:c14d2ea31934aaa9d82c253245b3504527192ee4ebbb3c251aa6843d9fe89113

x86_64

openshift-logging/cluster-logging-operator-bundle@sha256:9fb2edd638ad211f2198c4525ff3b8bf0a0bd3063a2bf8970f64542cacb72297
openshift-logging/cluster-logging-rhel9-operator@sha256:695733369faba7b24b5ebecdbb23be5629965072d970f41e7560ad7e7bd20765
openshift-logging/elasticsearch-operator-bundle@sha256:f10faba1a512f74de91428b4115a44a81caceb8a6421208af40325e35f42d80f
openshift-logging/elasticsearch-proxy-rhel9@sha256:7bc0be59f5df97cd7f7d6b98234655ba22805d6939ab5c2cc7b617ceb825aa18
openshift-logging/elasticsearch-rhel9-operator@sha256:6b71841725fd505df5ad4ea1087df170991ec4cec6fab95ab6369e06315c6b79
openshift-logging/elasticsearch6-rhel9@sha256:0022ac204d647a69ccdcaf9fd0fbee94e24ca057549ec12796c4e6f32771239b
openshift-logging/eventrouter-rhel9@sha256:0588e4bc5c93cd7ffaa7e62e777ddb312a370f3ae0abe086c693307e618df491
openshift-logging/fluentd-rhel9@sha256:24180b4ed3274ce8d33ea2a7406f3d642b52be135fa4b1f9887c84121b3b17f9
openshift-logging/log-file-metric-exporter-rhel9@sha256:2549a9eab157ce4b3a09ee9da48501141c275434d49ff44538f8932318674679
openshift-logging/logging-curator5-rhel9@sha256:aae070a7ac2773e5b5e24eba3520ba0466c54226d285d8061d79cefbd5a98b50
openshift-logging/logging-loki-rhel9@sha256:1876b5e4c74e2b4b55db1b260458b836135302231f8105571367fb7c078d5976
openshift-logging/logging-view-plugin-rhel9@sha256:63b9805cb4789b8f4eddc18a1858db89981d5ab47aaa6b2abaae76268bf4fff2
openshift-logging/loki-operator-bundle@sha256:323077959144e1268cda4938e7c605d4d926e7306d0ebcb4f48486c0c0bee2e9
openshift-logging/loki-rhel9-operator@sha256:cfaf9d86a604739e8abdad148a4da0b6fcbf37eb29685a8dfd9705b4b517694b
openshift-logging/lokistack-gateway-rhel9@sha256:be79e53146405cbd68311a7f43a8468e7a34f843de6f50c0ce2b64bc03c9d514
openshift-logging/opa-openshift-rhel9@sha256:377bbf02e095c50fac2304fa6860781f7f602315382b4256738f16aeab2cec33
openshift-logging/vector-rhel9@sha256:53fe228d43449e286779e2425f24c39bca423332567cd3a2a25a4f1228a8270c

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility