Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:3448 - Security Advisory
Issued:
2025-04-02
Updated:
2025-04-02

RHSA-2025:3448 - Security Advisory

  • Overview
  • Updated Images

Synopsis

Important: Logging for Red Hat OpenShift - 5.8.19

Type/Severity

Security Advisory: Important

Topic

Logging for Red Hat OpenShift - 5.8.19

Description

Logging for Red Hat OpenShift - 5.8.19
logging-fluentd-container: Local File Inclusion in Rack::Static(CVE-2025-27610)

Solution

For OpenShift Container Platform 4.13 see the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this errata update:

https://docs.redhat.com/en/documentation/openshift_container_platform/4.13/html/release_notes/ocp-4-13-release-notes

For Red Hat OpenShift Logging 5.8, see the following instructions to apply this update:

https://docs.redhat.com/en/documentation/openshift_container_platform/4.13/html/logging/cluster-logging-upgrading

Affected Products

  • Logging Subsystem for Red Hat OpenShift for ARM 64 5 for RHEL 9 aarch64
  • Logging Subsystem for Red Hat OpenShift 5 for RHEL 9 x86_64
  • Logging Subsystem for Red Hat OpenShift for IBM Power, little endian 5 for RHEL 9 ppc64le
  • Logging Subsystem for Red Hat OpenShift for IBM Z and LinuxONE 5 for RHEL 9 s390x

Fixes

(none)

CVEs

  • CVE-2019-12900
  • CVE-2020-11023
  • CVE-2024-2236
  • CVE-2024-2511
  • CVE-2024-3596
  • CVE-2024-4603
  • CVE-2024-4741
  • CVE-2024-5535
  • CVE-2024-12797
  • CVE-2024-56171
  • CVE-2025-24928
  • CVE-2025-27610

References

  • https://access.redhat.com/security/updates/classification/#important

aarch64

openshift-logging/cluster-logging-rhel9-operator@sha256:aa142a95199de9e7882e5651a74d0728ab388324d6e267d622eb6279da3079df
openshift-logging/elasticsearch-proxy-rhel9@sha256:61c2546d259e936813c24d5c24a4264decbf995b1a9bb9e4c4862ae78e4cb2bf
openshift-logging/elasticsearch-rhel9-operator@sha256:091f0451d797c77e65a7d66f96b119fc2d0a4fb2135ca823c9bbc98e0608e8aa
openshift-logging/elasticsearch6-rhel9@sha256:79068ba7ce12a707642f1fdadf42b3c9cb09ef3568069983b66203db1ae507cf
openshift-logging/eventrouter-rhel9@sha256:27cccbb7889c087f2dc9e6dd0533118a7d2153a7d5cc05c5ad91c7f9e561a6a2
openshift-logging/fluentd-rhel9@sha256:19eaa6ae3e6c01e326159e0cf49b23187ebb8e3f93543b2c8e17d7395638d9c3
openshift-logging/log-file-metric-exporter-rhel9@sha256:ef0557b0de6d11ec80d15d025eda53f026f02073485505a35dc5166c80dfda41
openshift-logging/logging-curator5-rhel9@sha256:2522652da6873e0965bf618a065bf62e0a0090914f199a2f5aed5f80ae199063
openshift-logging/logging-loki-rhel9@sha256:0ac63dc1868acb8ae64fae3cdacf8cfe69ba7e66ab5bd24ebc5137cf7dec7edd
openshift-logging/logging-view-plugin-rhel9@sha256:ce610df894141ecd129a0262b665e2abc63523384386c1658883e97b631d1a81
openshift-logging/loki-rhel9-operator@sha256:f03cbb1e73a1f7900194586b715544c47e0b533f29bc35ebe5238ac9d2c1ccc4
openshift-logging/lokistack-gateway-rhel9@sha256:4264d4260cd3ceb7870115a114db90f20583d7df00c7b2871ef3b8e6fa57e663
openshift-logging/opa-openshift-rhel9@sha256:9d49082c8bc33eb8c79a6abdbeb09b50d892d44d964fabaeafd43aff57e30ab0
openshift-logging/vector-rhel9@sha256:9af3152e7a9d927daf4256a179b0fc53657bf07620bfb0de2dd53d9b05b1b6d4

ppc64le

openshift-logging/cluster-logging-rhel9-operator@sha256:2c34a2fc8930def94030528d1afb73c8f03eedc69e3281a0ce7e467c5567a452
openshift-logging/elasticsearch-proxy-rhel9@sha256:89957d5eecaa421bcf51cee91794abc494fa0de349dabe7c17cfe4013ca0f582
openshift-logging/elasticsearch-rhel9-operator@sha256:7ece1e59bffcb8a499c332f7894488c3f5185062960d435d091434c9ae320378
openshift-logging/elasticsearch6-rhel9@sha256:02bb4040887338b9c19ac0715f159207c57602faec6c83980d1c0a855a4074f4
openshift-logging/eventrouter-rhel9@sha256:9d04aa6cb1ad5e2e84186855b285cbf8a931dbba6c8383cda046ca5fcd64db50
openshift-logging/fluentd-rhel9@sha256:b99ef69bcc153144105e8ea4c1dc238f043341e397ef67b8830f5545998e3298
openshift-logging/log-file-metric-exporter-rhel9@sha256:67d2c1aeb2f165cf195725c009fc13686f4849f8d0548b08630eb8fd10312606
openshift-logging/logging-curator5-rhel9@sha256:495109680367f70712623490f2dfb5780f22115725d491178d0f941bc7b141aa
openshift-logging/logging-loki-rhel9@sha256:b0d861ae4bf0bbffc2d8d2da384769a552578a54455cdfbaeb0e3d7d884e7eed
openshift-logging/logging-view-plugin-rhel9@sha256:6836875de26173a4d7dd5c8a0dc043864bfd45abb65fef0e0ef2abe9845fca5b
openshift-logging/loki-rhel9-operator@sha256:f123d2a7e27edfb36164cf4e5f1763f9a32763c9f89d98bec98845548f901a90
openshift-logging/lokistack-gateway-rhel9@sha256:5ffe39c3fbe2b17aeb15bcdf452374d285479d1a9a02e6ee8ebcfe7f37c84b2e
openshift-logging/opa-openshift-rhel9@sha256:3329ec7d4a417233462f1950040b4532def54558eb4f18376814997d5eb14f1b
openshift-logging/vector-rhel9@sha256:35610237d66bfea832f0917b3ad7ae6d01daa798e31fbfa0a6904eebef4c216c

s390x

openshift-logging/cluster-logging-rhel9-operator@sha256:be7d52f9d1b809f25728139144f3b2779ac5c6da823cf4cbf05511df3ee0e46d
openshift-logging/elasticsearch-proxy-rhel9@sha256:902de3f12ba13db4eae67868fe81999c8e582f01dbdb6ae4a999912429d27698
openshift-logging/elasticsearch-rhel9-operator@sha256:beb08d9a3f86fa590dde08779c34ac1a8dbdde8d79dee51fc25b91cc3e898144
openshift-logging/elasticsearch6-rhel9@sha256:b71c9ba3c14db85a864c78e0865df75bb2688607fd92abd5850953d637efc574
openshift-logging/eventrouter-rhel9@sha256:1543f266f5b64d3210a5df090a6112d6a5fe3e74fb82c213dea8778b1f3c6055
openshift-logging/fluentd-rhel9@sha256:7a61d105cb43d83bb81e20e910825f2b764d39a3be1bacc77445417e7a8873ff
openshift-logging/log-file-metric-exporter-rhel9@sha256:ef87bed528dee8864cc3cc709bdd9ab9768a60b94df855a59916426ac59459e0
openshift-logging/logging-curator5-rhel9@sha256:9e5e643be0fc792a48efdfe96eab270818abb81fcd2884605bfb9ce7f7254c55
openshift-logging/logging-loki-rhel9@sha256:6abece0eaac96afcb4cc6921516330c9415d67d59001af5a75caf54ebf0e193c
openshift-logging/logging-view-plugin-rhel9@sha256:5c75073c4428c450660b293e263ded1b3c02070aacc899c3d078aa1a7a69d8bd
openshift-logging/loki-rhel9-operator@sha256:971266e9a185989cccaa879b0b8b2be627f845ac1b9d5e2b02c46a5200f07d16
openshift-logging/lokistack-gateway-rhel9@sha256:01bb241551b7717bd2883afe85726a88408214f7b5ba36c58751dd867b89e7ba
openshift-logging/opa-openshift-rhel9@sha256:07536e729542d59dc970ced6663b0c692bc24954f2ee9b41af0f1cb5bcfc45a7
openshift-logging/vector-rhel9@sha256:238d9a25fd741d83f0a80282e73e8a4d2b799d94abef95fd1c8c0e2f1ddfda25

x86_64

openshift-logging/cluster-logging-operator-bundle@sha256:c18fdbfb3c5afd08dced9924a4850b5dd8bcdfe034760ec1ea796ced4bd40172
openshift-logging/cluster-logging-rhel9-operator@sha256:c80d27be078977ccb6d259d761c605d7990fffdad7addb6716e32c1c40e559d7
openshift-logging/elasticsearch-operator-bundle@sha256:a4ca23dd83bf36b87d5cf214d61fbcc4c6838768c59c873af97d227cd01f8abc
openshift-logging/elasticsearch-proxy-rhel9@sha256:d434f47fdfe85e5dd0f164898b8bfe244f94c54b4e223e2df3ec049717d136f9
openshift-logging/elasticsearch-rhel9-operator@sha256:586810258f5239551659aa5ec0eafa71e742b401d7e25d25ad8aa202bf2369d4
openshift-logging/elasticsearch6-rhel9@sha256:ebf5935be230637eb6d74dc58950fb83d66d6ecd30efd665c3bfb671d6115ab5
openshift-logging/eventrouter-rhel9@sha256:e0776cf186268d1710bae7e6f0e6f89b5b3a26a9c0c6e5a9f0bd5878aa4983bb
openshift-logging/fluentd-rhel9@sha256:4eff0883865594190aadfc622d85656c74d9148cc47775b0a30b818d28ce4244
openshift-logging/log-file-metric-exporter-rhel9@sha256:b3767b7acdcd766e8ac0260646001f2fe3af99c33499ebaab6cb1f8e32d6c95d
openshift-logging/logging-curator5-rhel9@sha256:e128d93b568f76e9600b4ca5dc4b2fc694c7d9941e54167d367f3c2e04394e2f
openshift-logging/logging-loki-rhel9@sha256:3cc151d154d3d74ab2f27f59cae417827afd41d83037672b753e65cfb29e759f
openshift-logging/logging-view-plugin-rhel9@sha256:2bcf136a10f07ee1164a1943b682efd3bc54db5b6df6952294980408c5d73772
openshift-logging/loki-operator-bundle@sha256:1bff8724352a71caded291da17d7270f8cf9553b0fb2c6536e3e8ec512ae1e5f
openshift-logging/loki-rhel9-operator@sha256:cd9133ddc730b690af71a75e48c683242a8110c3f13438bb831b5d7beabfde11
openshift-logging/lokistack-gateway-rhel9@sha256:b432d32a980ed2f0d5a649b6a9201ade9626045040c1bb25a7d762d62a449188
openshift-logging/opa-openshift-rhel9@sha256:c91f278f8180b9dd148630c42f35da1413c4f62a7ad75a8097e629597291440a
openshift-logging/vector-rhel9@sha256:f7a650fb6bba70c04162d4a68a559c82e92fe164cf80424201cd1251d8435d31

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility