Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:70267 - Security Advisory
Issued:
2026-09-22
Updated:
2026-09-22

RHSA-2026:70267 - Security Advisory

  • Overview
  • Updated Images

Synopsis

Red Hat Quay 3.14.9

Type/Severity

Security Advisory: Important

Topic

Red Hat Quay 3.14.9 is now available with bug fixes.

Description

Quay 3.14.9

Solution

Before applying this update, make sure all previously released errata relevant
to your system have been applied.

For details on how to apply this update, refer to:

https://access.redhat.com/articles/11458

Affected Products

  • Red Hat Quay

Fixes

  • PROJQUAY-11654 - Release Quay v3.14.9
  • PROJQUAY-11335 - config-tool: malformed struct tag on DistributedStorageArgs.Signature breaks storage config serialization

CVEs

  • CVE-2026-10143
  • CVE-2026-12143
  • CVE-2026-13149
  • CVE-2026-13676
  • CVE-2026-14257
  • CVE-2026-15792
  • CVE-2026-15927
  • CVE-2026-16221
  • CVE-2026-18255
  • CVE-2026-32591
  • CVE-2026-33747
  • CVE-2026-33748
  • CVE-2026-33818
  • CVE-2026-39820
  • CVE-2026-39821
  • CVE-2026-39822
  • CVE-2026-39828
  • CVE-2026-39829
  • CVE-2026-39830
  • CVE-2026-39831
  • CVE-2026-39832
  • CVE-2026-39835
  • CVE-2026-42151
  • CVE-2026-42154
  • CVE-2026-42499
  • CVE-2026-42504
  • CVE-2026-42508
  • CVE-2026-4427
  • CVE-2026-44432
  • CVE-2026-44486
  • CVE-2026-44487
  • CVE-2026-44488
  • CVE-2026-44492
  • CVE-2026-44494
  • CVE-2026-44495
  • CVE-2026-44496
  • CVE-2026-44705
  • CVE-2026-44990
  • CVE-2026-46595
  • CVE-2026-46597
  • CVE-2026-48526
  • CVE-2026-49477
  • CVE-2026-54058
  • CVE-2026-54060
  • CVE-2026-55379
  • CVE-2026-55380
  • CVE-2026-56852
  • CVE-2026-56853
  • CVE-2026-56858
  • CVE-2026-56859
  • CVE-2026-56860
  • CVE-2026-56862
  • CVE-2026-57231
  • CVE-2026-59197
  • CVE-2026-59199
  • CVE-2026-59200
  • CVE-2026-59204
  • CVE-2026-59205
  • CVE-2026-59869
  • CVE-2026-59885
  • CVE-2026-59886
  • CVE-2026-6322
  • CVE-2026-67213
  • CVE-2026-67214
  • CVE-2026-67313
  • CVE-2026-67314
  • CVE-2026-67320
  • CVE-2026-67321
  • CVE-2026-69152
  • CVE-2026-69153
  • CVE-2026-73086
  • CVE-2026-73088
  • CVE-2026-73089
  • CVE-2026-84375
  • CVE-2026-9277

References

  • https://access.redhat.com/security/updates/classification/

amd64

registry.redhat.io/quay/quay-container-security-operator-bundle@sha256:16cf30e26cc9394960f5d67f7ce4ce77c4633456a7220000fe7b2f7676ae8905
registry.redhat.io/quay/quay-container-security-operator-rhel8@sha256:8c54f9c121acfe6d861f24d7ca3b9f330af63cd6ad9bf5d9ca87e5d414e827ce
registry.redhat.io/quay/quay-bridge-operator-bundle@sha256:f80a60db45e7833e69e42a08f08f848fe58f8e7c9cdcec41a40d6a204142793b
registry.redhat.io/quay/quay-bridge-operator-rhel8@sha256:c25fea72a35277ae55647d93908f16d968944ef4401893b7001e0a5cfbdfbdf8
registry.redhat.io/quay/quay-builder-qemu-rhcos-rhel8@sha256:3a18dd4bf159bb844b805630958b834d561b747e530304bce72c8edff533bb05
registry.redhat.io/quay/quay-builder-rhel8@sha256:73f69e28443a678474d5c4b22cfc1cb7f399a297b3c856dc4838c5d139771551
registry.redhat.io/quay/clair-rhel8@sha256:f668385cf19dd0402bc1bd7bc085e3ddb3ee8a07a3b178bdeccd1331f742406a
registry.redhat.io/quay/quay-operator-bundle@sha256:5f89f2c53adcf4221f10ea0f55ae8b7ba8e5ebbd0094303803831d8c2ae02686
registry.redhat.io/quay/quay-operator-rhel8@sha256:a4c208d9862637179906b3ef6c3804ec8b4b2c5aa6e373245d90375b0583bef3
registry.redhat.io/quay/quay-rhel8@sha256:7c91331317d27a2647a66f54c439ce276393f8756e6f4044d9d9e562318302af

arm64

registry.redhat.io/quay/quay-container-security-operator-rhel8@sha256:745ef44b9fb3d4074af1d9ab2a01db555283cf2e3e3d11deede64e5dd4a67785
registry.redhat.io/quay/quay-bridge-operator-rhel8@sha256:18d8d95e9fd69f705b79759579922ae7bc892b9fc713354ee3413a3272b53d9b
registry.redhat.io/quay/quay-builder-qemu-rhcos-rhel8@sha256:4438575e5faa8c34d4c42327ebec71a590a3ef6aba43fccbb2437d5b176fa64c
registry.redhat.io/quay/quay-builder-rhel8@sha256:d8c30b66bb001b9a4aee84e3f8160aa604db7b078da069b6cc4a2a5fcdb3e7b8
registry.redhat.io/quay/clair-rhel8@sha256:1f694daf74afa33a0d94fb8858a6878793d5b96148dcc77ef9291451966b7138
registry.redhat.io/quay/quay-operator-rhel8@sha256:868d14a60728a32b816af8ac03a95be11e004ec6ccf73afc6c90847eba0600da
registry.redhat.io/quay/quay-rhel8@sha256:7a1ac0915d132e9fcedd015a34579bb62eb09e80113448c21aa65387d1c502aa

ppc64le

registry.redhat.io/quay/quay-container-security-operator-rhel8@sha256:839938dad861101606c706996240537e734dbba2d46792a3a1b277d9fbf81f2c
registry.redhat.io/quay/quay-bridge-operator-rhel8@sha256:2a06097fa7a38f2c06ff9d16e2bb5a691b7d3eb5b3d0474e854239ee85114f3e
registry.redhat.io/quay/quay-builder-qemu-rhcos-rhel8@sha256:c53d4d738b80e960b1858ae5d1b6ddf2aea24e9b571092acff475bfbfb5606dc
registry.redhat.io/quay/quay-builder-rhel8@sha256:fe7fa40620e9e4a45118b6d97ea7fb94e30b95b90bb110732d5640744c195d0a
registry.redhat.io/quay/clair-rhel8@sha256:242cebeb09263d507c51315918c1f6af3843d95090d15b5cb6d509d2a4850f50
registry.redhat.io/quay/quay-operator-rhel8@sha256:360e96f5762ee46b0b49e2d4553096072f22574e9c3822733c15fc5860d715f5
registry.redhat.io/quay/quay-rhel8@sha256:9b8b79496225ba99f76cedc27aad13b761fa6d081fc229b8caeafffcebc529c6

s390x

registry.redhat.io/quay/quay-container-security-operator-rhel8@sha256:d11700d820614043a3b36025faad080b3d48146d80f293670927d844ea5ed725
registry.redhat.io/quay/quay-bridge-operator-rhel8@sha256:88b3a9ac2fc065ecf22284f201a4b3f08a2d0855566d9724ad1db1d782963360
registry.redhat.io/quay/quay-builder-qemu-rhcos-rhel8@sha256:ac5b77ab6ff988eb0a4590aa06f7f5c6ec7b8ca20532a2dc8273cf9c418550f3
registry.redhat.io/quay/quay-builder-rhel8@sha256:90265feb2504477c4669609911a642bf93f79e6181e528c264fcdda5eba2f6af
registry.redhat.io/quay/clair-rhel8@sha256:1a1eaf93cb0d184c940fb5faf3d8d4a6348919a7f0318b98d95e04cc84a10bd0
registry.redhat.io/quay/quay-operator-rhel8@sha256:5b84a0eaf797a5d7cbfa7d99ac3df0e8fe4e7c627a7d462001d56f17f745fd80
registry.redhat.io/quay/quay-rhel8@sha256:5ab9413d3b6291049d4d2e6c4f3b1ac0db9587e5ea946e1853f60eabed49d8bd

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility