Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:0678 - Security Advisory
Issued:
2025-01-23
Updated:
2025-01-23

RHSA-2025:0678 - Security Advisory

  • Overview
  • Updated Images

Synopsis

Important: RHSA: Submariner 0.16.8 - bug and security fixes

Type/Severity

Security Advisory: Important

Topic

Submariner 0.16.8 packages that fix various bugs and add various enhancements that are now available for Red Hat Advanced Cluster Management for Kubernetes version 2.9

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE links in the References section.

Description

Submariner enables direct networking between pods and services on different Kubernetes clusters that are either on-premises or in the cloud.

For more information about Submariner, see the Submariner open source community website at: https://submariner.io/.

This advisory contains bug fixes and enhancements to the Submariner container images.

Security fix(es):

golang.org/x/net/html: Non-linear parsing of case-insensitive content in
golang.org/x/net/html (CVE-2024-45338)

Solution

To learn more about Submariner, see https://docs.redhat.com/en/documentation/red_hat_advanced_cluster_management_for_kubernetes/2.9/html/networking/networking#submariner

Affected Products

  • Red Hat Advanced Cluster Management for Kubernetes 2 for RHEL 8 x86_64

Fixes

  • BZ - 2333122 - CVE-2024-45338 golang.org/x/net/html: Non-linear parsing of case-insensitive content in golang.org/x/net/html

CVEs

  • CVE-2019-12900
  • CVE-2023-37920
  • CVE-2024-3596
  • CVE-2024-5535
  • CVE-2024-9287
  • CVE-2024-10041
  • CVE-2024-10963
  • CVE-2024-11168
  • CVE-2024-45338
  • CVE-2024-50602
  • CVE-2024-53580

References

  • https://access.redhat.com/security/updates/classification/#important

aarch64

rhacm2/lighthouse-agent-rhel8@sha256:4103830b222e9e1bab1e312c7d4bf4792e93879430ce79e7f98ea09979319867
rhacm2/lighthouse-coredns-rhel8@sha256:48acb1c3ee134dea580caa1f96b23508370b924e2cc812cdc884af54e132cb8a
rhacm2/nettest-rhel8@sha256:f9ba7684e1eb65f20859e7c3f8938d1a57f970b986ac696ce8eb0e426757dc4e
rhacm2/subctl-rhel8@sha256:94bba21b3ac146d90acae66a4338b6766699f5c21b05506d5b2b37e5b1ee51dd
rhacm2/submariner-gateway-rhel8@sha256:626ed479787d120bccf63f59ee9e8c8fff54c0d3d0fee12ce7e59f8d6d402f18
rhacm2/submariner-globalnet-rhel8@sha256:5014b7013ae0844adb7c8821f1c91d8f7a70c71e2958706a3451bccb377e080c
rhacm2/submariner-operator-bundle@sha256:eb25249c004e9c8e54164146072f08f8ec6ea0a49f675c52fe4e3760701718cc
rhacm2/submariner-rhel8-operator@sha256:8e11f2812c401bf0a0a84c4beec6686b25ec2a10c064c7de7c8ade53f887f304
rhacm2/submariner-route-agent-rhel8@sha256:2a5dba38b3df97f5dba7928e9b5532a7102fff03d62325980744e63eb809f8c1

ppc64le

rhacm2/lighthouse-agent-rhel8@sha256:cba309a798b1f0cbb06895a2b2010aea107d71ef9bdcefc6ad0c81bfe5cbb33f
rhacm2/lighthouse-coredns-rhel8@sha256:809c396d43082f039e5e7b7812e7cc034539c1f81ed5e37a7b5254c4c453f5db
rhacm2/nettest-rhel8@sha256:70bfed971bca255e2d7921d02587486779e42d2ebc0f8035f8bcaac6587cc26e
rhacm2/subctl-rhel8@sha256:f63a9b68a116fc607341598cf97a5c222a6db233030c63e93414a30ad44df9ff
rhacm2/submariner-gateway-rhel8@sha256:b0158be34d11e566f60926ba0379608be51c873f6da05e21fee3bcce215493d0
rhacm2/submariner-globalnet-rhel8@sha256:6b28e0591630d4fb22e3329816ff7152f7f1fd97a070f5cf4f63f59b49c88666
rhacm2/submariner-operator-bundle@sha256:1ec3ea9c77730954a459f95274ba26c9e1fa4c9102f6c824eb8154b421ef1c0e
rhacm2/submariner-rhel8-operator@sha256:ef594f9902060089544d484b12efac8122a49d1a61241c17465ea2b7d5b2051e
rhacm2/submariner-route-agent-rhel8@sha256:4ac5ce7be10b9934fa90269180d7beaee895b63c72429cdfa3a9177526de6404

s390x

rhacm2/lighthouse-agent-rhel8@sha256:16f54bc5d261cc8416b0a1b544eace8d0705d40df411741a2fc6847ebcf35d21
rhacm2/lighthouse-coredns-rhel8@sha256:be2bbfcbed28fcd72c78518d91ff47d2570748c4c293e3439defa3008a90ef94
rhacm2/nettest-rhel8@sha256:a45c60718100b4a26d17c938f0e2e45654bc0e650cd92033bb95919f16407b5d
rhacm2/subctl-rhel8@sha256:ee3ec57182c619f8e2ef9dfbcb5f0835e9048b99bdb935a1c1daeedf7d543f19
rhacm2/submariner-gateway-rhel8@sha256:cb616c00be08ddc86d3b9ed91c7cdc2437b3302d84f0b078111146eda1b8cdbd
rhacm2/submariner-globalnet-rhel8@sha256:e6d05a706410ae1f22a39756779c7b1d5dfb594ac8d9e61104e03d1fc7b66147
rhacm2/submariner-operator-bundle@sha256:34daa11345ab8777aa1db1c1d11df855cb203f13580270392dbd5df782ec508b
rhacm2/submariner-rhel8-operator@sha256:384fe092d2686a8ea940b89dc5a127200898b96a6f9afaf5bce21c12f5a7bf67
rhacm2/submariner-route-agent-rhel8@sha256:fb749f29f7bf5bda2337b3112d69142cc05a19c1ad0123044d80dc7b05ebe184

x86_64

rhacm2/lighthouse-agent-rhel8@sha256:80530d58fa1242108c8b6c0f57fcc8a1dad7307fa87a76ec296b88a04c5c649a
rhacm2/lighthouse-coredns-rhel8@sha256:74ceb4a0832bbbe1bed830b17f5603257b2ebca40046e9e130ae75dfc0ab2c8f
rhacm2/nettest-rhel8@sha256:3b4370d68a067823dc8f65fc14ff710ade10323e2daaaeed5c966e59c0a0481a
rhacm2/subctl-rhel8@sha256:007002f11c39b6e0cd4f758dd762eeec9d990dc323d5f87a7dc001b949a938d1
rhacm2/submariner-gateway-rhel8@sha256:96e6618e951fdea3216f8675145128c336b60004eb10cf9b789bcc8e3e4e1751
rhacm2/submariner-globalnet-rhel8@sha256:1e909ca27697d1d7ed47a034a430963f496ddb3005dd32f918b38031924c8092
rhacm2/submariner-operator-bundle@sha256:21a98e54b85f8a2b438d32587bbd20cf8d2174903ebe360bfa89c156658435fb
rhacm2/submariner-rhel8-operator@sha256:4c7f0070040c1324659798b12447c4602df54471060194c4fa517d696fd699ef
rhacm2/submariner-route-agent-rhel8@sha256:1fc79f8cda5bf3aa9ed277d1b91fab46796cd4af1d5504fb265cd91c7aab77d7

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility