Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:2670 - Security Advisory
Issued:
2026-02-18
Updated:
2026-02-18

RHSA-2026:2670 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: OpenShift Container Platform 4.17.49 packages and security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

Red Hat OpenShift Container Platform release 4.17.49 is now available with updates to packages and images that fix several bugs and add enhancements.

This release includes a security update for Red Hat OpenShift Container Platform 4.17.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments.

This advisory contains the RPM packages for Red Hat OpenShift Container Platform 4.17.49. See the following advisory for the container images for this release:

https://access.redhat.com/errata/RHSA-2026:2672

Security Fix(es):

  • github.com/sirupsen/logrus: github.com/sirupsen/logrus: Denial-of-Service due to large single-line payload (CVE-2025-65637)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

All OpenShift Container Platform 4.17 users are advised to upgrade to these updated packages and images when they are available in the appropriate release channel. To check for available updates, use the OpenShift CLI (oc) or web console. Instructions for upgrading a cluster are available at https://docs.redhat.com/en/documentation/openshift_container_platform/4.17/html-single/updating_clusters/index#updating-cluster-cli.

Solution

For OpenShift Container Platform 4.17 see the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this asynchronous errata update:

https://docs.redhat.com/en/documentation/openshift_container_platform/4.17/html/release_notes/

Affected Products

  • Red Hat OpenShift Container Platform 4.17 for RHEL 9 x86_64
  • Red Hat OpenShift Container Platform 4.17 for RHEL 8 x86_64
  • Red Hat OpenShift Container Platform for Power 4.17 for RHEL 9 ppc64le
  • Red Hat OpenShift Container Platform for Power 4.17 for RHEL 8 ppc64le
  • Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.17 for RHEL 9 s390x
  • Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.17 for RHEL 8 s390x
  • Red Hat OpenShift Container Platform for ARM 64 4.17 for RHEL 9 aarch64
  • Red Hat OpenShift Container Platform for ARM 64 4.17 for RHEL 8 aarch64

Fixes

  • BZ - 2418900 - CVE-2025-65637 github.com/sirupsen/logrus: github.com/sirupsen/logrus: Denial-of-Service due to large single-line payload

CVEs

  • CVE-2025-65637

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat OpenShift Container Platform 4.17 for RHEL 9

SRPM
openshift-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.src.rpm SHA-256: b9183f1489fbc53677961e7595491cbffd1a552c7561ee5c8e49d6553bbf9fec
x86_64
openshift-hyperkube-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.x86_64.rpm SHA-256: 71aa7a02291ca545f9ad025f17b68691363ed52e434ce920025274d8ddf7fbe0
openshift-kube-apiserver-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.x86_64.rpm SHA-256: 6be426af508acc833122c91a70251a6c5bea41429d952b3ba6a3dc2da2a0c6cd
openshift-kube-controller-manager-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.x86_64.rpm SHA-256: e50d244ec3125447ea16972a657ebe70fb275a305ee6c6009a8d4b03873094d6
openshift-kube-scheduler-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.x86_64.rpm SHA-256: 34d941e9eb0e6e5f2ab363b71cb37e4c95a4038fa52dbce8126b0050978b60e3
openshift-kubelet-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.x86_64.rpm SHA-256: 6cb470442fefabb8d7cb8018d67bf8fb71a654efa2980593c1fa7804ae9fe86b

Red Hat OpenShift Container Platform 4.17 for RHEL 8

SRPM
openshift-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.src.rpm SHA-256: f9cf7f88db04ee776e30620c18b8dfb4176c7bea4391ab143d4f4e71af69eb77
x86_64
openshift-hyperkube-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.x86_64.rpm SHA-256: 2495d3b569d1d6fdbb21ed92238cc4e4ada812c4d9d01bcb2b2bf16bc36d3761
openshift-kube-apiserver-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.x86_64.rpm SHA-256: 668cf323a8f2752ecfc464271b5eb3c0e1428b3b0d8b770af911719564a07a38
openshift-kube-controller-manager-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.x86_64.rpm SHA-256: 2bb43042784fcba5ac4c24ed85075ecf8bfca79ec89c80022ffdaac84642e7c4
openshift-kube-scheduler-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.x86_64.rpm SHA-256: 9afac22a53c3dd324bee0eda526fcd952b05c731a8639bdc6664c8aaba8e610b
openshift-kubelet-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.x86_64.rpm SHA-256: 80e35da354c5152311d025a5f035653ee9354c2b9c54dc6503250183f463dc25

Red Hat OpenShift Container Platform for Power 4.17 for RHEL 9

SRPM
openshift-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.src.rpm SHA-256: b9183f1489fbc53677961e7595491cbffd1a552c7561ee5c8e49d6553bbf9fec
ppc64le
openshift-hyperkube-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.ppc64le.rpm SHA-256: 34a10eee53c277b774b58f0436ba74d0e8faf116e595d440157f2e427fa564e3
openshift-kube-apiserver-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.ppc64le.rpm SHA-256: a528ffdcbfee833774692bdc038e3bad0f9d1ed14e07c284ee31c4d0f372072b
openshift-kube-controller-manager-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.ppc64le.rpm SHA-256: 97118e91d7f90e2c8e997caee4dbb50619851d561d9c87305c0a36ff7bb30410
openshift-kube-scheduler-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.ppc64le.rpm SHA-256: 9422f409e357a678a31efedfc8d7454a81a5ea288ad4f07719a2408849445ba2
openshift-kubelet-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.ppc64le.rpm SHA-256: b6e468d0bec69ab431a4aa487a666c373519a4d1f204f266fdb49ed8eaff9086

Red Hat OpenShift Container Platform for Power 4.17 for RHEL 8

SRPM
openshift-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.src.rpm SHA-256: f9cf7f88db04ee776e30620c18b8dfb4176c7bea4391ab143d4f4e71af69eb77
ppc64le
openshift-hyperkube-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.ppc64le.rpm SHA-256: ee59de24619e3ffd7c70f5daaee3a3e2f9118b0f708d7798c90207906ec67690
openshift-kube-apiserver-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.ppc64le.rpm SHA-256: 54f41570b150315657addd846471d3d8c0d7006059d80b45aea7fbc04b17bc78
openshift-kube-controller-manager-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.ppc64le.rpm SHA-256: 71348a7f0682f47685d5ade3ff42d41f3b7dc356423f72b86b86ae1e29ef6f56
openshift-kube-scheduler-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.ppc64le.rpm SHA-256: 08536934253e96c0e29f91d7c37cda55ccf2a7204fec9bbad5c1ec86d7ea944d
openshift-kubelet-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.ppc64le.rpm SHA-256: f34b616cedd54f31b97066299e7893bd05545a0ed60553f1ef68277d341b0271

Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.17 for RHEL 9

SRPM
openshift-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.src.rpm SHA-256: b9183f1489fbc53677961e7595491cbffd1a552c7561ee5c8e49d6553bbf9fec
s390x
openshift-hyperkube-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.s390x.rpm SHA-256: 74028e5a0cc4099a4a522153f5caab2e3fc94c5f633fe0bbe33fc4a0b967e6e7
openshift-kube-apiserver-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.s390x.rpm SHA-256: 2e992ad7126e53b564f130122aa2922a08cae467e7a9b6d1cc0300abdac94639
openshift-kube-controller-manager-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.s390x.rpm SHA-256: 2ab73eb2d23de44be779ad6328d2b86a4f28e49847a223255eb420264d9fa9ef
openshift-kube-scheduler-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.s390x.rpm SHA-256: 678bf61291ce35eaeee137badf509389cb6070cd0498d2434c0b9207ab07c5b8
openshift-kubelet-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.s390x.rpm SHA-256: ed7717e7a4f595877633fe9933c64ef760cb463b9f9c046222670431991d395e

Red Hat OpenShift Container Platform for IBM Z and LinuxONE 4.17 for RHEL 8

SRPM
openshift-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.src.rpm SHA-256: f9cf7f88db04ee776e30620c18b8dfb4176c7bea4391ab143d4f4e71af69eb77
s390x
openshift-hyperkube-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.s390x.rpm SHA-256: 3e78ddd92db5cda5041427e46594aa4f9520def5871d7dcfd2880445836b2c9c
openshift-kube-apiserver-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.s390x.rpm SHA-256: bffb48281f19dc753d2e14d3e4ce66b488412e448bb6e1a0d7f188b3847ff3f9
openshift-kube-controller-manager-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.s390x.rpm SHA-256: 822a449b14a01b55e07d594137867641ceae6beafb7cdd925c1d6b3b8b819173
openshift-kube-scheduler-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.s390x.rpm SHA-256: f7cd0f0b40a660f451ed0fe86f35c99e378a16af948d644ce41af9526f2b688f
openshift-kubelet-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.s390x.rpm SHA-256: bf9cd343e281c5a9634dc9ab9761d4966293c67503d903746fa33a913701d545

Red Hat OpenShift Container Platform for ARM 64 4.17 for RHEL 9

SRPM
openshift-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.src.rpm SHA-256: b9183f1489fbc53677961e7595491cbffd1a552c7561ee5c8e49d6553bbf9fec
aarch64
openshift-hyperkube-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.aarch64.rpm SHA-256: dc400b1338cc83889114689cd86f0e5474459c005b718e8b309b46d598b06839
openshift-kube-apiserver-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.aarch64.rpm SHA-256: a461a448cfcb66426611bbb36d58688f284b55591d91f021a9b0641714d8b7b0
openshift-kube-controller-manager-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.aarch64.rpm SHA-256: 3324100da6553dc68478b4f8e289864fe47948b951c12ba8300243d6336e242d
openshift-kube-scheduler-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.aarch64.rpm SHA-256: a664382f20b10631d18185bcdb854ade9412d32137ad3bee0dfa6302839a1af1
openshift-kubelet-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el9.aarch64.rpm SHA-256: 77e52659f01c16b2ee9f022e3eb5b4b4c8cf9b7b4ba42ede49472c80b188d672

Red Hat OpenShift Container Platform for ARM 64 4.17 for RHEL 8

SRPM
openshift-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.src.rpm SHA-256: f9cf7f88db04ee776e30620c18b8dfb4176c7bea4391ab143d4f4e71af69eb77
aarch64
openshift-hyperkube-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.aarch64.rpm SHA-256: 2ff9f700e38aec9039ed7c183a2731a87ead6172c7499bdf8da8b6c33f003c16
openshift-kube-apiserver-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.aarch64.rpm SHA-256: 60740c03db9456f17e26dfd51a9ab168f270c107f7a1bceb981eb4dce8ce37d8
openshift-kube-controller-manager-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.aarch64.rpm SHA-256: 1084050f4bfc518c3e33538acbd36f779e557769dd075c1afa91c9f4caafa615
openshift-kube-scheduler-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.aarch64.rpm SHA-256: 1e2ae2fbcab0291f448f21c803d534955b8aac90eaa07c8fb10bd29ad5e38956
openshift-kubelet-4.17.0-202602031716.p2.g4e295fa.assembly.stream.el8.aarch64.rpm SHA-256: 7978666549e50831471addc316bf2551a9cf23b0bd2758046cdf2b166806dad4

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility