RHSA-2026:3186: Important: Red Hat build of Cryostat 4.1.1: new RHEL 9 container image security update
Important: Red Hat build of Cryostat 4.1.1: new RHEL 9 container image security update
Other sources
The Cryostat 4 on RHEL 9 container images have been updated to fix several bugs.Users of Cryostat 4 on RHEL 9 container images are advised to upgrade to these updated images, which contain backported patches to fix these bugs and add these enhancements. Users of these images are also encouraged to rebuild all container images that depend on these images.Security Fix(es): golang: archive/zip: Excessive CPU consumption when building archive index in archive/zip (CVE-2025-61728) golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726) crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121) You can find images updated by this advisory in the Red Hat Container Catalog (see the References section).
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:3186?
The severity of RHSA-2026:3186 is classified as important, indicating a significant security update.
How do I fix RHSA-2026:3186?
To fix RHSA-2026:3186, update your Red Hat Cryostat 4.1.1 container images to the latest version available.
What vulnerabilities does RHSA-2026:3186 address?
RHSA-2026:3186 addresses several bugs potentially impacting the functionality and security of Cryostat 4 on RHEL 9.
Who is affected by RHSA-2026:3186?
Users of Red Hat Cryostat 4.1.1 on RHEL 9 container images are affected by RHSA-2026:3186.
When was RHSA-2026:3186 released?
RHSA-2026:3186 was released as a security update to enhance the Red Hat Cryostat 4.1.1 container images.