Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:1013 - Security Advisory
Issued:
2025-02-04
Updated:
2025-02-04

RHSA-2025:1013 - Security Advisory

  • Overview
  • Updated Images

Synopsis

Important: RHSA: Submariner 0.19.2 - bug fix and enhancement update

Type/Severity

Security Advisory: Important

Topic

Submariner 0.19 packages that fix various bugs and add various enhancements that are now available for Red Hat Advanced Cluster Management for Kubernetes version 2.12

Red Hat Product Security has rated this update as having a security impact
of Important. A Common Vulnerability Scoring System (CVSS) base score,
which gives a detailed severity rating, is available for each vulnerability
from the CVE links in the References section.

Description

Submariner enables direct networking between pods and services on different Kubernetes clusters that are either on-premises or in the cloud.

For more information about Submariner, see the Submariner open source community website at: https://submariner.io/.

This advisory contains bug fixes and enhancements to the Submariner container images.

Security fix(es):

golang.org/x/net/html: Non-linear parsing of case-insensitive content in
golang.org/x/net/html (CVE-2024-45338)

Solution

To learn more about Submariner, see https://docs.redhat.com/en/documentation/red_hat_advanced_cluster_management_for_kubernetes/2.12/html/networking/networking#submariner

Affected Products

  • Red Hat Advanced Cluster Management for Kubernetes 2 for RHEL 9 x86_64

Fixes

  • BZ - 2333122 - CVE-2024-45338 golang.org/x/net/html: Non-linear parsing of case-insensitive content in golang.org/x/net/html

CVEs

  • CVE-2023-38710
  • CVE-2023-38711
  • CVE-2023-38712
  • CVE-2024-45338
  • CVE-2024-53580

References

  • https://access.redhat.com/security/updates/classification/#important

aarch64

rhacm2/lighthouse-agent-rhel9@sha256:8a8e69070a876b7285865b4ae53ba6e0fcdfc4bb9ade4a55f372cabcb612cab7
rhacm2/lighthouse-coredns-rhel9@sha256:6b8ba0489d61cdf04827716eb465a83dbc2e0fc9f38fed9827b028aef382dc7d
rhacm2/nettest-rhel9@sha256:2198b883205d6dfc1f8f709d00d5edade7cd7a9cacbbb1d3a53ebacaa9e8992e
rhacm2/subctl-rhel9@sha256:44b1be403ce56fe0472aa5aec541cb372f3849c5eb2f0d0edcf29c9b02941919
rhacm2/submariner-gateway-rhel9@sha256:f98c24056f4d6620e3b612545677a14e0d9ad06eb62d3e58e6cc8ca4927e24c6
rhacm2/submariner-globalnet-rhel9@sha256:22dc450db507f683f14d00bd60b55ebdf03b6b42db5bc1598abdb0da0a644ca2
rhacm2/submariner-operator-bundle@sha256:ec914abfb54de7dd60aa90f45898c0d5c1c8fa55ca86d502e12e6d000d8e5d2a
rhacm2/submariner-rhel9-operator@sha256:8b5b729394485e48cab8b14c2d4fe2f5665f12361f76dde3e8f94f130e8144d6
rhacm2/submariner-route-agent-rhel9@sha256:9d41e54fbe7cbe55a90f274539506305620475e3ca422fcb7a4684112e5212b0

ppc64le

rhacm2/lighthouse-agent-rhel9@sha256:dbd3d37afbfb3d1cb9b8012fd952dfeadcd84b7c3f1f5516a8ee1651f4a1be7b
rhacm2/lighthouse-coredns-rhel9@sha256:bcd36d1828a802199f9efa5bdf66831b1193eba1665404bb8ecf5a6342376bf6
rhacm2/nettest-rhel9@sha256:c8871afe59b9786761374b468480b041926af3a40eb88864522b48a49fec0e8c
rhacm2/subctl-rhel9@sha256:cb9d1ea03a943c26986cff6729f1e333f41e84407294aada22f6ad54b07cf6cb
rhacm2/submariner-gateway-rhel9@sha256:7b0ea1b68e1fdf8c41854c0db603b8a3e785b61841d54d3fb1fdc07085a5d6f2
rhacm2/submariner-globalnet-rhel9@sha256:6f6ec8006b4853079b3309d1a2f96fb8db1f3c3b5f6d292d9e19bd61ea4776c2
rhacm2/submariner-operator-bundle@sha256:d2ef0cb41ba47fad62ac0105a64658e197d5d2ab09ba0128ec93fad7f02f9cfc
rhacm2/submariner-rhel9-operator@sha256:36b939dcc477d9ce9b031e26a0500531945f8efdc609b243706ea15dab531bfd
rhacm2/submariner-route-agent-rhel9@sha256:5f1c0fc0fafb9d56327005cf4f56a48cbdb20c7dc7c2b525a1296de2bbc09f5b

s390x

rhacm2/lighthouse-agent-rhel9@sha256:fc07e35dbff3e5d3ce44b467a69fd42663cb36f7d7946a5e669f6209b7aabbc7
rhacm2/lighthouse-coredns-rhel9@sha256:8fc57758a5df8894f78185e7b6245cb59169733db2f0398fb6aec18e4d93f4e3
rhacm2/nettest-rhel9@sha256:f78f2efc623e9dcff43c9ffc06dfa30dbcbe85bed96c7d99fcb100e12dd339e2
rhacm2/subctl-rhel9@sha256:8a0516fc34525da5db4d6bea83eda211ca72ff1df8ad5b56cf99541116d4caf4
rhacm2/submariner-gateway-rhel9@sha256:cf760c31ca7977be99aaa4697a4d233142c32666bbd4978f1423c2f1380e092d
rhacm2/submariner-globalnet-rhel9@sha256:f95229ddb472bb36337d47d88497ab9e2de515ccecc666cc1aa34886a91dcda8
rhacm2/submariner-operator-bundle@sha256:40fbb1774a82a375cf2522664e18f07821dc8cf315f323660856d0c1eea1b86e
rhacm2/submariner-rhel9-operator@sha256:98c291a56b6ebce5caf66c4f5be6fa88689c75d6d77abc19f10f3be3f2ff3f3f
rhacm2/submariner-route-agent-rhel9@sha256:b0515704eadc8547406a1854ee8f2b320dd1c94ba05c0b3b1dd54685d195c3a3

x86_64

rhacm2/lighthouse-agent-rhel9@sha256:f969948856e5fc29a1802b41d5708a9f006ccf64cb096d60240e099b601f2e76
rhacm2/lighthouse-coredns-rhel9@sha256:0d83e02fde05674b80703d270e6f480bab7f91871e120a1655bbbd44d28cf701
rhacm2/nettest-rhel9@sha256:8bc733639b7db3bb5953c2062ef04009c19cefd989dddc991cdfdba978429f47
rhacm2/subctl-rhel9@sha256:a33392a396c98464fcfae216c5e1c39d693486dc08c14b1b9995f9effac3581a
rhacm2/submariner-gateway-rhel9@sha256:b603f2dc4a8b54ef854adaf7a7461b471c84c1031178ed743eca60c6ecabc4df
rhacm2/submariner-globalnet-rhel9@sha256:67d4fa611992ba751adae10983934a99708e8e8129fa7ddd8a163d4ff2d077f5
rhacm2/submariner-operator-bundle@sha256:cd21fbb3aaae42d06922328ff6aae30b08b7080c91d33083bed8141072e5998c
rhacm2/submariner-rhel9-operator@sha256:ff1d35fb891c401d2ba3e7794ffadd06c711d9f72ce8ba84e5840f2bb9c47200
rhacm2/submariner-route-agent-rhel9@sha256:8a1f680a6161f4562a9bd6a214728a4aee92fc48c0a96df129289f76bd732c65

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility