Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:0384 - Security Advisory
Issued:
2025-01-16
Updated:
2025-01-16

RHSA-2025:0384 - Security Advisory

  • Overview
  • Updated Images

Synopsis

Important: RHSA: Submariner 0.18.4 - bug and security fixes

Type/Severity

Security Advisory: Important

Topic

Submariner 0.18.4 packages that fix various bugs and security issues that are now available for Red Hat Advanced Cluster Management for Kubernetes version 2.11.

Red Hat Product Security has rated this update as having a security impact
of Important. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available for each vulnerability from
the CVE links in the References section.

Description

Submariner enables direct networking between pods and services on different Kubernetes clusters that are either on-premises or in the cloud.

For more information about Submariner, see the Submariner open source community website at: https://submariner.io/.

This advisory contains security fixes, bug fixes, and enhancements to the Submariner container images.

Security fix(es):
golang.org/x/net/html: Non-linear parsing of case-insensitive content in golang.org/x/net/html (CVE-2024-45338)

Solution

To learn more about Submariner, see https://docs.redhat.com/en/documentation/red_hat_advanced_cluster_management_for_kubernetes/2.11/html/networking/networking#submariner

Affected Products

  • Red Hat Advanced Cluster Management for Kubernetes 2 for RHEL 9 x86_64

Fixes

  • BZ - 2333122 - CVE-2024-45338 golang.org/x/net/html: Non-linear parsing of case-insensitive content in golang.org/x/net/html

CVEs

  • CVE-2024-45338

References

  • https://access.redhat.com/security/updates/classification/#important

aarch64

rhacm2/lighthouse-agent-rhel9@sha256:50d111733ab8210aadf6741847c2858a3adb6c96e6a3ee1414f4ff3bc51a1e43
rhacm2/lighthouse-coredns-rhel9@sha256:a9a3362d6c38199e9f47cabd5312172c730d6dbb3dc77411e84f73f678f9e11c
rhacm2/nettest-rhel9@sha256:6fed967d33a82ba77ce511e94757d1ab0722b294b1ac0d330a2e696ab83c254d
rhacm2/subctl-rhel9@sha256:250b747603a5aa01e340f814128025b2e4ad2ead6ac78162ad2b82818524008c
rhacm2/submariner-gateway-rhel9@sha256:254324f36616804d2a4d499c375a571ed832371e4860e102a1e3daf3b3287879
rhacm2/submariner-globalnet-rhel9@sha256:fceb75dc5a24a0c84c9aa5725c104c6bf19cad85797887e1e3c5bae4ae6455fb
rhacm2/submariner-operator-bundle@sha256:1d0356b14dafb2f78ea0ef35e19ffeb9db9af2f57a7d8c4d838b7627f4976d70
rhacm2/submariner-rhel9-operator@sha256:257966e4010330f7b26353c3c2d088c2af85f1d7f6558fb53e2cc15b3ae711c3
rhacm2/submariner-route-agent-rhel9@sha256:ed6ef9312bf27127e3d2869c51e58d12d7eb47efab8cb67fa95d16927adc9a24

ppc64le

rhacm2/lighthouse-agent-rhel9@sha256:b57142936cbf5137880996af902bef15c635d943b849b8d74fa66993cd37b661
rhacm2/lighthouse-coredns-rhel9@sha256:46ab143f45d316ce6634ec92fcbaadf0231cdf7f33e7cdf6c576c939c9729098
rhacm2/nettest-rhel9@sha256:e079724ccb4133e5e02b0293565b86393d3b57de27af764325f32993869925f0
rhacm2/subctl-rhel9@sha256:5f85394f5e5dc77ef25a5aaef89f60446af4ddee70b3d5b8a3362a2ec33709ec
rhacm2/submariner-gateway-rhel9@sha256:38d03c6e1d071296262a0acca11db176e57bc217245cd38aa90849711abd77cf
rhacm2/submariner-globalnet-rhel9@sha256:0cab58d91ef7404efe8f8a2a6390272671f3a67f0b6b96eb595410afc1a1dfe3
rhacm2/submariner-operator-bundle@sha256:f036ed02304931ff125dee0ee6c62b268fe39aa42879e539165d3b338cd9bcc0
rhacm2/submariner-rhel9-operator@sha256:79286b0f95c8cc2de367528b07f22bca20fdb74d1c0f6add87d6bd24216814ab
rhacm2/submariner-route-agent-rhel9@sha256:2039a3be8c20748aa882a90355294714914f2e4fa117aefd5157b6d0a4925ed8

s390x

rhacm2/lighthouse-agent-rhel9@sha256:fa5629d3d7aa3f2f9c6aa7a62cbee08b879717ae0ed38009dc8f32e49c45a0cc
rhacm2/lighthouse-coredns-rhel9@sha256:a61d730a3dbbf4c3a7b8d2c0cf3759abf0498318832391d3ec9a357780fecc2a
rhacm2/nettest-rhel9@sha256:a92ff7caadaccbc6615732b3272432f844dcb76a0a223a0c9236c03529d2c0ad
rhacm2/subctl-rhel9@sha256:573fab5792cd711092fdf8d78a8ca099c73d5c0faa3f6bac3e496cca79700f36
rhacm2/submariner-gateway-rhel9@sha256:256bbbe96815b89b4bab2fc703b1995891dbcbdc8ba16311d5fabb8345532fb4
rhacm2/submariner-globalnet-rhel9@sha256:20e77c802b814afefac6355f1c3ac6eea59a5ecd211b29e81f2246ff21c29f3e
rhacm2/submariner-operator-bundle@sha256:be6158b9d13531aeb0702fcdafa3772cd2c5fe355bf9e63deffa1a930c54b880
rhacm2/submariner-rhel9-operator@sha256:360d98ceda85d212823b35edca01e63cb0c04cb8a56463475f595de62cb19534
rhacm2/submariner-route-agent-rhel9@sha256:f36ae578edbd6bc4c0d4a186a5b4df67657e34ce8f7773cf51e9eea3f8519280

x86_64

rhacm2/lighthouse-agent-rhel9@sha256:b35735bea5a748af5774c8b69818924c80cf588a7fb93ea3a15c12499ba21b20
rhacm2/lighthouse-coredns-rhel9@sha256:b1157095405425a89f0770c4606b2264cc0977478f5d6c8bcac90b258cf34319
rhacm2/nettest-rhel9@sha256:d2ac2f84cf3a837ac41e66b038e5507e6e37a1324538a4effb110ad46ca2039c
rhacm2/subctl-rhel9@sha256:483328322fbb1f71c177caa1e49d73990611ef4be20c9ab622cdff7c5b6de22c
rhacm2/submariner-gateway-rhel9@sha256:f01cd372e854a9d7d20bc7dc5d9566e641f077e703a6b1c10791bf06c3f6e570
rhacm2/submariner-globalnet-rhel9@sha256:9f71c6115da60903c445489992c89ea00975ca8f1cab22b3c6883ed2f4c4e21b
rhacm2/submariner-operator-bundle@sha256:7ded07e5ee28d2066021c95dcc95887d05451e58ca0f99bceab8c46757c69d9c
rhacm2/submariner-rhel9-operator@sha256:48eb7721d75ae8115e2e328c64fe69270498533faa02178a63c8fc4cb4e060e4
rhacm2/submariner-route-agent-rhel9@sha256:04e200e40f8d5e3fb893455742983f64447dd96824e852f3bae891819c09d5ec

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility