Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:7253 - Security Advisory
Issued:
2026-04-16
Updated:
2026-04-16

RHSA-2026:7253 - Security Advisory

  • Overview
  • Updated Images

Synopsis

OpenShift Container Platform 4.13.65 security and extras update

Type/Severity

Security Advisory: Moderate

Topic

Red Hat OpenShift Container Platform release 4.13.65 is now available with updates to packages and images that fix several bugs.

This release includes a security update for Red Hat OpenShift Container Platform 4.13.

Red Hat Product Security has rated this update as having a security impact of Low. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments.

This advisory contains the RPM packages for Red Hat OpenShift Container Platform 4.13.65. See the following advisory for the container images for this release:

https://access.redhat.com/errata/RHSA-2026:7252

Security Fix(es):

None

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

All OpenShift Container Platform 4.13 users are advised to upgrade to these updated packages and images when they are available in the appropriate release channel. To check for available updates, use the OpenShift CLI (oc) or web console. Instructions for upgrading a cluster are available at https://docs.redhat.com/en/documentation/openshift_container_platform/4.13/html-single/updating_clusters/index#updating-cluster-within-minor.

Solution

See the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this asynchronous errata update:

https://docs.redhat.com/en/documentation/openshift_container_platform/4.13/html/release_notes

Details on how to access this content are available at
https://docs.redhat.com/en/documentation/openshift_container_platform/4.13/html-single/updating_clusters/index#updating-cluster-within-minor.

Fixes

  • OCPBUGS-78009 - [openshift-4.13] sriov-network-* images can't be built hermetically
  • OCPBUGS-78013 - [openshift-4.13] sriov-cni can't be build hermetically
  • OCPBUGS-78692 - [openshift-4.13] hermetic build failure - node-feature-discovery
  • BZ - 2418900

CVEs

  • CVE-2025-65637

References

  • https://access.redhat.com/security/updates/classification/

amd64

registry.redhat.io/openshift4/ose-cloud-event-proxy@sha256:00ac1d6e19468af785164348cdf75db6b2a8e6a2262e9f48d1edf81b320b444b
registry.redhat.io/openshift4/ose-cloud-event-proxy-rhel8@sha256:00ac1d6e19468af785164348cdf75db6b2a8e6a2262e9f48d1edf81b320b444b
registry.redhat.io/openshift4/ose-cluster-nfd-operator@sha256:8759bfcc424793409364fb1b3f4568dd5e23f4509cd8d7f6974fc3224ddb203a
registry.redhat.io/openshift4/ose-clusterresourceoverride-rhel8@sha256:4dc0a14e228dab07c4ac1797fe2d2a330bfeb283a42c790e786ce7a36e13f63f
registry.redhat.io/openshift4/ose-clusterresourceoverride-rhel8-operator@sha256:84cf39f2b244e3b841a049ad15f380afcbec3f2e76212277e6303a9c86b780c3
registry.redhat.io/openshift4/ose-sriov-infiniband-cni@sha256:0015885387d303273c36a4dae19c48839de96b32fe59c3c0133e535942b6be72
registry.redhat.io/openshift4/ose-ptp@sha256:3cf37ec3b7095c05d88c179eb770914f7ed39df7a15cbd25f372eb73e437802b
registry.redhat.io/openshift4/ose-local-storage-diskmaker-rhel9@sha256:193ecd701cffe8caa002bdcb84ddfa403d75dc41b96040f819de4de0ac6e0030
registry.redhat.io/openshift4/ose-local-storage-mustgather-rhel9@sha256:2a3d8859889e2594262e01d08cf14f3b70f67e327a9bddb68ec732a37ce95e26
registry.redhat.io/openshift4/ose-local-storage-rhel9-operator@sha256:5c23b8fabacd6053cc96eec51df3bc69dd212df802b417904c75332962521800
registry.redhat.io/openshift4/ose-node-feature-discovery@sha256:98eb113fd99401d78a21b82792a866dcf48092ce37d194a0df6a00cbf4654682
registry.redhat.io/openshift4/ose-ansible-operator@sha256:bfeadf450453601556e47c0133d2020e1fa31f6faef86d3addb53435cb10ab3c
registry.redhat.io/openshift4/ose-cluster-capacity@sha256:53dc9db905c62d566792dde9a00c79a310eaa72bcd336001fa2971c92a3c1c35
registry.redhat.io/openshift4/ose-egress-dns-proxy@sha256:b7267525101156f2b261bcec7e5d29b5332ff08b3382ae9961606941cc3994ce
registry.redhat.io/openshift4/ose-egress-router@sha256:0be6c10bf50993f7f5c3d28d0f6580570bf4eada8e92c04c3e045245eb1c4246
registry.redhat.io/openshift4/ose-helm-operator@sha256:6c672ec48f7289d97f7e77bfbd43b34914ad8832aa9524c4f3deed5a8ca92065
registry.redhat.io/openshift4/ose-operator-sdk-rhel8@sha256:71a87ce3f532552ec18029a7b03f502853e75a6e95ada408fb5d5ccaaa9a5873
registry.redhat.io/openshift4/ose-kubernetes-nmstate-handler-rhel8@sha256:b9c3d63333a51509a861d2ac1a7e0661493cb1ac6279ddbf263031e7e6d2e3c3
registry.redhat.io/openshift4/kubernetes-nmstate-rhel8-operator@sha256:1a9ad9d63bc9092c92ed45597a9dac0838bf9cc1a31bd35d056f511b6f85197e
registry.redhat.io/openshift4/ose-aws-efs-csi-driver-container-rhel8@sha256:b111390b5f7b13ca551c98be0d16366674dc6a81b8c2b9bc13ec0df3864f1183
registry.redhat.io/openshift4/ose-aws-efs-csi-driver-rhel8-operator@sha256:03ef2194d0e3472585aaf7eb4b309afb4da193f3dca05e4fceeac84455518011
registry.redhat.io/openshift4/ose-csi-driver-shared-resource-mustgather-rhel8@sha256:1536e782a4b8c473d30ab964c33ad39a5992527dc3a3f3518a3e93be24415a7a
registry.redhat.io/openshift4/ose-egress-http-proxy@sha256:5a553b32480345a6fc1a728466436e4ceaade0adc3dd4dae594d4ed26ca39934
registry.redhat.io/openshift4/frr-rhel8@sha256:db42dfe62fcf51d68767cc00b214d80af082fb20d480f9efd86bdff0c5126364
registry.redhat.io/openshift4/ose-gcp-filestore-csi-driver-rhel8@sha256:ddd865bf01c87ca44dec9a8b96a39220fc022002f0d40e066ae9a9d6b83512e5
registry.redhat.io/openshift4/ose-gcp-filestore-csi-driver-rhel8-operator@sha256:53a8b1f5ce447d6759b99d1c05a8cc92166c2f8011e4a1b58acb2b23dd492af3
registry.redhat.io/openshift4/metallb-rhel8@sha256:4396607b7de4e5ff26cc7ec55977ae0b35a329dd057467ba9eb08bf097367892
registry.redhat.io/openshift4/metallb-rhel8-operator@sha256:341b4b59975923c87f3d74deecc40cd5d869c33abe5ac878dc717c5eedcfe906
registry.redhat.io/openshift4/ose-ptp-operator@sha256:1ef8a168797ac72ce8830753d852785a4e56fd58d16f9d9ab0c50221f4503e4f
registry.redhat.io/openshift4/ptp-must-gather-rhel8@sha256:d56a29fbce15d3d0c97f0509f84debd5c4a3ffa22f1e10b8ea3234bc5636b7f9
registry.redhat.io/openshift4/sriov-cni-rhel9@sha256:a338c8934f713453c1444d2843c1b68ff55958f56ca8a0bc66aad7befe5a0101
registry.redhat.io/openshift4/ose-sriov-dp-admission-controller@sha256:54dd831ac0f41b5d5ed757d86e03e26ceec64f778ff87a03d1044c79f383dc6c
registry.redhat.io/openshift4/ose-sriov-network-config-daemon@sha256:15736c5c451b31b46fb38f180f337940eecb0347bb4064340e6ca8dbaf0d5c3e
registry.redhat.io/openshift4/ose-sriov-network-device-plugin@sha256:236daced5ded186fe431be2582b20d5406bb846a31aec5130f9760acee9c7ab1
registry.redhat.io/openshift4/ose-sriov-network-operator@sha256:666ab87e49959766d0744e8395aacd54f06579066207ee8d5baf417ee030f058
registry.redhat.io/openshift4/ose-sriov-network-webhook@sha256:e6705fc366af4fcd0f8a39fc4d93f8b4c1b10d992260f459f0787a0d19b2a641
registry.redhat.io/openshift4/ose-vertical-pod-autoscaler-rhel8@sha256:c18fbbac58e8246e7fab75746dffbc51f5b757568386cdb51f8a8be9a8b98bdf
registry.redhat.io/openshift4/ose-vertical-pod-autoscaler-rhel8-operator@sha256:b2ff49b60f3e24d650a8475f703922c1d2ef699071f8cc0b4e5e47cac72d47cc

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility