Red Hat released RHBA-2023:1050, updating the Red Hat Enterprise Linux 9 flatpak-sdk container image. The image incorporates backported fixes for security issues covered by RHSA-2023:0951, including Linux kernel flaws involving out-of-bounds access, use-after-free conditions, stack and integer overflows, and potential remote denial of service.
Organizations using the affected SDK image should upgrade to the updated or latest el9/flatpak-sdk image and rebuild all dependent container images. Red Hat said Dockerfiles and build scripts should be updated accordingly; the advisory applies to RHEL 9 deployments on x86_64, s390x, ppc64le, and aarch64 architectures.

See real exploitation activity before you spend the cycle.
1 event from the most recent confirmed update back to the earliest known activity.
Red Hat issued RHBA-2023:1050, updating the el9/flatpak-sdk container image with backported patches for security issues covered by RHSA-2023:0951. The advisory instructed users to upgrade the image and rebuild dependent container images.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.