- 発行日:
- 2026-07-16
- 更新日:
- 2026-07-16
RHSA-2026:40972 - Security Advisory
概要
RHTAS 1.3.6 - Red Hat Trusted Artifact Signer Release
タイプ/重大度
Security Advisory: Important
トピック
The 1.3.6 release of Red Hat Trusted Artifact Signer OpenShift Operator.
For more details please visit the product documentation at https://access.redhat.com/documentation/en-us/red_hat_trusted_artifact_signer/1.3
説明
The RHTAS Operator can be used with OpenShift Container Platform 4.16, 4.17, 4.18, 4.19, 4.20 and 4.21
解決策
Red Hat Trusted Artifact Signer simplifies cryptographic signing and verifying of software artifacts such as container images, binaries and source code changes. It is a self-managed on-premise deployment of the Sigstore project available at https://sigstore.dev
Platform Engineers, Software Developers and Security Professionals may use RHTAS to ensure the integrity, transparency and assurance of their organization's software supply chain.
For details on using the operator, refer to the product documentation at https://access.redhat.com/documentation/en-us/red_hat_trusted_artifact_signer/1.3
You can find the release notes for this version of Red Hat Trusted Artifact Signer at https://access.redhat.com/documentation/en-us/red_hat_trusted_artifact_signer/1.3/html-single/release_notes/index
影響を受ける製品
- Red Hat Trusted Artifact Signer (RHTAS)
修正
(none)CVE
amd64
| registry.redhat.io/rhtas/cosign-rhel9@sha256:ff6a2a11b8c1dff47cb115cfa3ba5709bff5f1cf485bdaecff47f1a37cad2405 |
| registry.redhat.io/rhtas/fetch-tsa-certs-rhel9@sha256:509c0e0b9eed611a57d26fc3bc4ca20bd086c887aad681efbc9abd256fe75768 |
| registry.redhat.io/rhtas/gitsign-rhel9@sha256:9c9fd84299b0743bc9ae38a82263ad9032ec3b8e21fc535adadcf754e08273cf |
| registry.redhat.io/rhtas/rekor-cli-rhel9@sha256:2460173fff610c5def39777d5a32ab1d7d59a9298335c489326abfeb7ca4bc15 |
| registry.redhat.io/rhtas/updatetree-rhel9@sha256:dfae5377710f369844bc6502a6b107d998b1b55e1ca202810ebaf1903efabe5e |
Red Hat のセキュリティーに関する連絡先は secalert@redhat.com です。 連絡先の詳細は https://access.redhat.com/security/team/contact/ をご覧ください。