Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:8315 - Security Advisory
Issued:
2024-10-23
Updated:
2024-10-23

RHSA-2024:8315 - Security Advisory

  • Overview
  • Updated Images

Synopsis

Important: Logging for Red Hat OpenShift - 5.9.8

Type/Severity

Security Advisory: Important

Topic

Logging for Red Hat OpenShift - 5.9.8

Description

Logging for Red Hat OpenShift - 5.9.8

Solution

For OpenShift Container Platform 4.14 see the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this errata update:

https://docs.openshift.com/container-platform/4.14/release_notes/ocp-4-14-release-notes.html

For Red Hat OpenShift Logging 5.9, see the following instructions to apply this update:

https://docs.openshift.com/container-platform/4.14/logging/cluster-logging-upgrading.html

Affected Products

  • Logging Subsystem for Red Hat OpenShift for ARM 64 5 for RHEL 9 aarch64
  • Logging Subsystem for Red Hat OpenShift 5 for RHEL 9 x86_64
  • Logging Subsystem for Red Hat OpenShift for IBM Power, little endian 5 for RHEL 9 ppc64le
  • Logging Subsystem for Red Hat OpenShift for IBM Z and LinuxONE 5 for RHEL 9 s390x

Fixes

  • LOG-6169 - [k8s 1.30 and ocp 4.17] Upgrade LokiStack Log Storage Dependencies
  • LOG-6159 - Upgrade to Loki v3.2.0
  • LOG-6181 - [release-5.9] Add `namespace` label automatically to all custom loki logging alerts
  • LOG-6183 - [release-5.9] Loki: The field components.ruler is invalid
  • LOG-6214 - Logs from selected namespaces are still collected when the maxRecordsPerSecond is 0.
  • LOG-6206 - Configuring Openshift log forwarding to external Elasticsearch creates incorrect vector.toml file

CVEs

  • CVE-2024-6119
  • CVE-2024-24791
  • CVE-2024-34155
  • CVE-2024-34156
  • CVE-2024-34158
  • CVE-2024-34397
  • CVE-2024-45490
  • CVE-2024-45491
  • CVE-2024-45492

References

  • https://access.redhat.com/security/updates/classification/#important

aarch64

openshift-logging/cluster-logging-rhel9-operator@sha256:b1d679da4674db586f6314ade8264bd49e717b3fb76c9d8657526b59dc05cc74
openshift-logging/eventrouter-rhel9@sha256:0abade3bd78bea3e729c36ffbd4ff460841f45d1ef719870b095e26e31f62f7a
openshift-logging/fluentd-rhel9@sha256:3087c33146d33463047876fc571943e3e5174695e595cac8ffe6ca785cbaafca
openshift-logging/log-file-metric-exporter-rhel9@sha256:6cbc80327e1ae63b7cdf49ab69e0548082fbc9732234296b5225f31eca061e03
openshift-logging/logging-loki-rhel9@sha256:073dfc6e3cd5a79e66ac55d682f3738c8909bc308b05920526b030fc0e4f3a08
openshift-logging/logging-view-plugin-rhel9@sha256:4886b6dcaf484444c5a33e8d844a67924e5a8bf92e318733fb0774998710938e
openshift-logging/loki-rhel9-operator@sha256:dc536cc1392ea2320c425f54e50ec3b2021bbb1efccd0acf793167aec4cc344e
openshift-logging/lokistack-gateway-rhel9@sha256:c9881c6c6849d76dad1a66e33d249104440def484d6e09fc64c1ad5d14c917b5
openshift-logging/opa-openshift-rhel9@sha256:0d97eaa0eb32cacc0f6fbe1bfb690a99577ca23df07b3422005ff2f668444734
openshift-logging/vector-rhel9@sha256:323ed7b70de3cca05ab437ad4839527e3123cd039fc80acd16e3cfabcaf1046b

ppc64le

openshift-logging/cluster-logging-rhel9-operator@sha256:794943f92c8a3ff033db21e3a8b4afaf82f3dd09a061dc9751cb48558c0c51ca
openshift-logging/eventrouter-rhel9@sha256:f09b00988cad8a14014b8674640793bff4a70a227662063128d054eb85005f2e
openshift-logging/fluentd-rhel9@sha256:d2d6cea1508b62ed79291c08491c0ae2849c78d836d36e0613e75cb88653f78b
openshift-logging/log-file-metric-exporter-rhel9@sha256:b5fa7d006c1353b32b64f44347fb45d948bcad223e873186316bf26a5c2c71ae
openshift-logging/logging-loki-rhel9@sha256:02c4321cdb54a20fb0107ffb1b6e66264ff3344321710ccf6d542b82dc266d2b
openshift-logging/logging-view-plugin-rhel9@sha256:ec50213bde1072cfa6773694c62c1e470cf2a443b073bcf80cb8da0e784b9fef
openshift-logging/loki-rhel9-operator@sha256:bc5b78084cf8e298d8a5787743f933396628b95bfbff8f32680ef050434a4663
openshift-logging/lokistack-gateway-rhel9@sha256:472501a840dfbe1f6593a65cee81c656d0f728b1a98150bc9fc9c9b8c01d7fd0
openshift-logging/opa-openshift-rhel9@sha256:4fa381bbc59f502334d03cc6f4d296ce692d797d997091a2bae088c8e594ac78
openshift-logging/vector-rhel9@sha256:9c0aa87656a48d99ba3cd82350db54bb6303749e11e3a39252e1f58f18157bbe

s390x

openshift-logging/cluster-logging-rhel9-operator@sha256:f2cccb73d1b2783405b5da1722220f6923eef5c13a462d9cf4bbb4875bb1e7da
openshift-logging/eventrouter-rhel9@sha256:a9b5cb331697c0745967e31a81206fd96c3aec0052ba4447ffe2c1019fedeb47
openshift-logging/fluentd-rhel9@sha256:9d868cabb4aec7b827e6307a684ef4d302486108e85f9e13482cfc14fc26fd82
openshift-logging/log-file-metric-exporter-rhel9@sha256:2d9804cdf1dfa08c0b392b04be43c9d84e1a126fadea03bc418778aa74237f5b
openshift-logging/logging-loki-rhel9@sha256:212d4b689300b2cd3d4a21a094de7897800bb5d9dde46da9c2383509da14b1b9
openshift-logging/logging-view-plugin-rhel9@sha256:451269d28212fbfbe2bf5e1e26c859a577ad456e585e48f0c2851bd8ccd5cae9
openshift-logging/loki-rhel9-operator@sha256:68b0d10ca4d158b930d20b20da3c79fc44813a549b55a42c85330e5fd054b1f5
openshift-logging/lokistack-gateway-rhel9@sha256:95ecddd6abf61643b3aa49663a5cc4f36549c3873aebaa45fa6c6cb5e7065668
openshift-logging/opa-openshift-rhel9@sha256:fbf9d27353d00f8a0d86c35d80dca2846a4bff99fc2c9ee42be5a6d453832114
openshift-logging/vector-rhel9@sha256:fa22505c9f61ec65d258125530bffe12e925be8e7f4479266c6e717eaed89aa5

x86_64

openshift-logging/cluster-logging-operator-bundle@sha256:629fd21c443fbe1a520215a50407b038d9edada515c7b862c27cbc3bd641bb69
openshift-logging/cluster-logging-rhel9-operator@sha256:b9ea673bf3367eb7ffddb144e67881fdac5d895652afce6eeff93192f51d6994
openshift-logging/eventrouter-rhel9@sha256:a086041b7055b8fb5c18a905710922372f835d2529f0ee7ee1e04c99fc42ab7d
openshift-logging/fluentd-rhel9@sha256:8981caf7cd018f62a780e401c64ff28492916bac7b9d245665253b6afa7c2a1e
openshift-logging/log-file-metric-exporter-rhel9@sha256:6be3b2cf29cbf8615aa6e180863cb20621d64bb17303913cc76ff78334f71331
openshift-logging/logging-loki-rhel9@sha256:fb1f616a682036672d1358df94f295bb48d0848c9efeef014166228226da3ee7
openshift-logging/logging-view-plugin-rhel9@sha256:dc62d66648e7ecbc656f4f5bfd5db8ef7aa210fb43102237be701e97a93f400a
openshift-logging/loki-operator-bundle@sha256:635a99a38954862df3bd924bbfea8906726f58c066b8d3c2b46a62fca5a89b0d
openshift-logging/loki-rhel9-operator@sha256:e9f1f08f7c7b00c984734a5229f168b266d63b9eee94bc81a401364a697ad2cc
openshift-logging/lokistack-gateway-rhel9@sha256:2e6636be9a637c79478ce51a8e9a98b3e8e7815182edf3dbf673406abd0d08d2
openshift-logging/opa-openshift-rhel9@sha256:4347ab53d8b292f2e3001aa4fa2edaa849ff8331ab5959f3683fabf5ae080cd4
openshift-logging/vector-rhel9@sha256:33d17ee43f935f9ecd123621ca19e957d95b4f9f1e16df5192330c69abaf6fb6

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility