4.19 version change log
View information of version changes for major, minor, and patch updates that are available for your Red Hat® OpenShift® on IBM Cloud® clusters that run this version. Changes include updates to Red Hat OpenShift, Kubernetes, and IBM Cloud Provider components.
Overview
Unless otherwise noted in the change logs, the IBM Cloud provider version enables Red Hat OpenShift APIs and features that are at beta. Red Hat OpenShift alpha features are disabled and subject to change.
Check the Security Bulletins on IBM Cloud Status for security vulnerabilities that affect Red Hat OpenShift on IBM Cloud. You can filter the results to view only Kubernetes Service security bulletins that are relevant to Red Hat OpenShift on IBM Cloud. Change log entries that address other security vulnerabilities but don't include an IBM security bulletin are for vulnerabilities that are not known to affect Red Hat OpenShift on IBM Cloud in normal usage. If you run privileged containers, run commands on the workers, or execute untrusted code, then you might be at risk.
Master patch updates are applied automatically. Worker node patch updates can be applied by reloading or updating the worker nodes. For more information about major, minor, and patch versions and preparation actions between minor versions, see Red Hat OpenShift versions.
Version 4.19
21 September 2026, Worker node fix pack 4.19.47_1593_openshift
The following list shows the components included in the worker node fix pack 4.19.47_1593_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-687.47.1.el9_8
- Resolves the following CVEs: RHSA-2026:69126, CVE-2026-8927, RHSA-2026:67910, CVE-2026-63381, CVE-2026-63382, CVE-2026-63383, CVE-2026-63384, CVE-2026-63385, CVE-2026-63387, CVE-2026-63388, RHSA-2026:68011, CVE-2025-35973, RHSA-2026:69130, CVE-2026-59999, CVE-2026-73281, CVE-2026-73282, CVE-2026-73283, RHSA-2026:67165, CVE-2026-14457, CVE-2026-18798, CVE-2026-54874, CVE-2026-63072, CVE-2026-63073, CVE-2026-63074, CVE-2026-63075, CVE-2026-63076, RHSA-2026:69540, RHSA-2026:69123, RHSA-2026:66366, CVE-2026-52859, CVE-2026-55892, CVE-2026-59857, CVE-2026-73072, CVE-2026-73076, CVE-2026-73077, CVE-2026-73078, RHSA-2026:67583, RHSA-2026:66403, RHSA-2026:64812, CVE-2026-56132, RHSA-2026:67585, RHSA-2026:64800, RHSA-2026:67265, CVE-2026-71226, CVE-2026-71227, RHSA-2026:64815, RHSA-2026:67155, RHSA-2026:64808, CVE-2026-52933, CVE-2026-53000, CVE-2026-64136, CVE-2026-64287, CVE-2026-64319, CVE-2026-64320, CVE-2026-64384, RHSA-2026:63129, CVE-2025-71147, CVE-2026-45970, CVE-2026-46185, CVE-2026-53073, CVE-2026-53391, CVE-2026-53392, CVE-2026-53397, CVE-2026-53399, CVE-2026-63800, CVE-2026-63808, CVE-2026-63824, CVE-2026-63886, CVE-2026-63887, CVE-2026-64002, CVE-2026-64018, CVE-2026-64268, CVE-2026-64298, CVE-2026-64304, CVE-2026-64387, CVE-2026-64438, CVE-2026-64490, CVE-2026-68145, CVE-2026-68166, CVE-2026-68480, CVE-2026-72069, CVE-2026-72130, RHSA-2026:66180, CVE-2026-43339, CVE-2026-43493, CVE-2026-46015, CVE-2026-46149, CVE-2026-46266, CVE-2026-46306, CVE-2026-46330, CVE-2026-53002, CVE-2026-53223, CVE-2026-53275, CVE-2026-53366, CVE-2026-64034, CVE-2026-64563, CVE-2026-64597, CVE-2026-72129, CVE-2026-74480, RHSA-2026:67150, CVE-2026-23466, CVE-2026-31479, CVE-2026-31566, CVE-2026-31656, CVE-2026-31692, CVE-2026-43334, CVE-2026-43368, CVE-2026-43370, CVE-2026-52917, CVE-2026-52918, CVE-2026-52947, CVE-2026-53053, CVE-2026-53072, CVE-2026-53091, CVE-2026-53182, CVE-2026-53209, CVE-2026-53246, CVE-2026-53254, CVE-2026-53256, CVE-2026-63801, CVE-2026-63889, CVE-2026-63944, CVE-2026-63945, CVE-2026-63946, CVE-2026-63947, CVE-2026-63971, CVE-2026-63975, CVE-2026-64037, CVE-2026-64113, CVE-2026-64117, CVE-2026-64255, CVE-2026-64515, CVE-2026-68086, CVE-2026-68117, CVE-2026-68264, CVE-2026-68300, CVE-2026-68315, CVE-2026-68376, CVE-2026-68402, CVE-2026-68406, and CVE-2026-72098.
- RHEL 9 (Satellite) 5.14.0-687.47.1.el9_8
- Kernel updates.
- RHEL 9 (Classic) 5.14.0-687.47.1.el9_8
- Resolves the following CVEs: RHSA-2026:69126, CVE-2026-8927, RHSA-2026:67910, CVE-2026-63381, CVE-2026-63382, CVE-2026-63383, CVE-2026-63384, CVE-2026-63385, CVE-2026-63387, CVE-2026-63388, RHSA-2026:68011, CVE-2025-35973, RHSA-2026:69130, CVE-2026-59999, CVE-2026-73281, CVE-2026-73282, CVE-2026-73283, RHSA-2026:67165, CVE-2026-14457, CVE-2026-18798, CVE-2026-54874, CVE-2026-63072, CVE-2026-63073, CVE-2026-63074, CVE-2026-63075, CVE-2026-63076, RHSA-2026:69540, RHSA-2026:69123, RHSA-2026:66366, CVE-2026-52859, CVE-2026-55892, CVE-2026-59857, CVE-2026-73072, CVE-2026-73076, CVE-2026-73077, CVE-2026-73078, RHSA-2026:67583, RHSA-2026:66403, RHSA-2026:64812, CVE-2026-56132, RHSA-2026:67585, RHSA-2026:64800, RHSA-2026:67265, CVE-2026-71226, CVE-2026-71227, RHSA-2026:64815, RHSA-2026:67155, RHSA-2026:64808, CVE-2026-52933, CVE-2026-53000, CVE-2026-64136, CVE-2026-64287, CVE-2026-64319, CVE-2026-64320, CVE-2026-64384, RHSA-2026:63129, CVE-2025-71147, CVE-2026-45970, CVE-2026-46185, CVE-2026-53073, CVE-2026-53391, CVE-2026-53392, CVE-2026-53397, CVE-2026-53399, CVE-2026-63800, CVE-2026-63808, CVE-2026-63824, CVE-2026-63886, CVE-2026-63887, CVE-2026-64002, CVE-2026-64018, CVE-2026-64268, CVE-2026-64298, CVE-2026-64304, CVE-2026-64387, CVE-2026-64438, CVE-2026-64490, CVE-2026-68145, CVE-2026-68166, CVE-2026-68480, CVE-2026-72069, CVE-2026-72130, RHSA-2026:66180, CVE-2026-43339, CVE-2026-43493, CVE-2026-46015, CVE-2026-46149, CVE-2026-46266, CVE-2026-46306, CVE-2026-46330, CVE-2026-53002, CVE-2026-53223, CVE-2026-53275, CVE-2026-53366, CVE-2026-64034, CVE-2026-64563, CVE-2026-64597, CVE-2026-72129, CVE-2026-74480, RHSA-2026:67150, CVE-2026-23466, CVE-2026-31479, CVE-2026-31566, CVE-2026-31656, CVE-2026-31692, CVE-2026-43334, CVE-2026-43368, CVE-2026-43370, CVE-2026-52917, CVE-2026-52918, CVE-2026-52947, CVE-2026-53053, CVE-2026-53072, CVE-2026-53091, CVE-2026-53182, CVE-2026-53209, CVE-2026-53246, CVE-2026-53254, CVE-2026-53256, CVE-2026-63801, CVE-2026-63889, CVE-2026-63944, CVE-2026-63945, CVE-2026-63946, CVE-2026-63947, CVE-2026-63971, CVE-2026-63975, CVE-2026-64037, CVE-2026-64113, CVE-2026-64117, CVE-2026-64255, CVE-2026-64515, CVE-2026-68086, CVE-2026-68117, CVE-2026-68264, CVE-2026-68300, CVE-2026-68315, CVE-2026-68376, CVE-2026-68402, CVE-2026-68406, and CVE-2026-72098.
- Red Hat OpenShift 4.19.47
- For more information, see the change logs.
- Red Hat CoreOS 4.19.47
- For more information, see the change logs.
- HAProxy b08f074d475aeb8ba959b03272daab5d46deec0c
- Resolves the following CVEs: CVE-2026-41991, CVE-2026-50219, CVE-2026-16118, CVE-2026-56132, and CVE-2026-41992.
21 September 2026, Master fix pack 4.19.45_1592_openshift
The following list shows the components that are in the master fix pack 4.19.45_1592_openshift. Master patch updates are applied automatically.
- Cluster health image v1.6.19
- New version contains updates and security fixes.
- etcd v3.5.33
- See the etcd release notes.
- IBM Cloud Block Storage driver and plug-in v2.5.28
- New version contains updates and security fixes.
- IBM Cloud Controller Manager v1.32.13-25
- New version contains updates and security fixes.
- IBM Cloud File Storage for Classic plug-in and monitor v457
- New version contains updates and security fixes.
- IBM Cloud RBAC Operator 109756b
- New version contains updates and security fixes.
- Key Management Service provider 2.10.30
- New version contains updates and security fixes.
- Portieris admission controller v0.14.3
- See the Portieris admission controller release notes
- Red Hat OpenShift on IBM Cloud 4.19.45
- See the Red Hat OpenShift on IBM Cloud release notes.
08 September 2026, Worker node fix pack 4.19.45_1591_openshift
The following list shows the components included in the worker node fix pack 4.19.45_1591_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-687.42.1.el9_8
- Resolves the following CVEs: RHSA-2026:63130, CVE-2026-33818, CVE-2026-56858, CVE-2026-56860, CVE-2026-56862, RHSA-2026:58936, CVE-2026-11822, CVE-2026-11824, RHSA-2026:60226, CVE-2026-54371, RHSA-2026:61355, CVE-2026-16730, RHSA-2026:61623, CVE-2026-41991, CVE-2026-41992, RHSA-2026:62217, CVE-2026-59843, CVE-2026-59844, CVE-2026-59845, CVE-2026-59846, CVE-2026-59847, CVE-2026-59848, CVE-2026-59850, RHSA-2026:61247, CVE-2026-11979, CVE-2026-6653, RHSA-2026:58572, CVE-2026-10805, RHSA-2026:61581, CVE-2026-18477, CVE-2026-18508, CVE-2026-5704, RHSA-2026:62143, CVE-2026-58471, CVE-2026-58472, RHSA-2026:57252, CVE-2026-43206, CVE-2026-43233, CVE-2026-43237, CVE-2026-45878, CVE-2026-45991, CVE-2026-46120, CVE-2026-52991, CVE-2026-53136, CVE-2026-53143, CVE-2026-53189, CVE-2026-53329, CVE-2026-53356, CVE-2026-53374, CVE-2026-63879, CVE-2026-63884, CVE-2026-63888, CVE-2026-63952, CVE-2026-64007, CVE-2026-64048, CVE-2026-64219, CVE-2026-64379, CVE-2026-64382, CVE-2026-64386, CVE-2026-64560, CVE-2026-68343, CVE-2026-68388, RHSA-2026:59723, CVE-2025-68211, CVE-2026-23003, CVE-2026-43114, CVE-2026-52920, CVE-2026-52924, CVE-2026-53131, CVE-2026-53185, CVE-2026-53268, CVE-2026-64189, CVE-2026-64191, CVE-2026-64276, CVE-2026-64277, and CVE-2026-74581.
- RHEL 9 (Satellite) 5.14.0-687.42.1.el9_8
- Kernel updates.
- RHEL 9 (Classic) 5.14.0-687.42.1.el9_8
- Resolves the following CVEs: RHSA-2026:63130, CVE-2026-33818, CVE-2026-56858, CVE-2026-56860, CVE-2026-56862, RHSA-2026:58936, CVE-2026-11822, CVE-2026-11824, RHSA-2026:60226, CVE-2026-54371, RHSA-2026:61355, CVE-2026-16730, RHSA-2026:61623, CVE-2026-41991, CVE-2026-41992, RHSA-2026:62217, CVE-2026-59843, CVE-2026-59844, CVE-2026-59845, CVE-2026-59846, CVE-2026-59847, CVE-2026-59848, CVE-2026-59850, RHSA-2026:61247, CVE-2026-11979, CVE-2026-6653, RHSA-2026:58572, CVE-2026-10805, RHSA-2026:61581, CVE-2026-18477, CVE-2026-18508, CVE-2026-5704, RHSA-2026:62143, CVE-2026-58471, CVE-2026-58472, RHSA-2026:57252, CVE-2026-43206, CVE-2026-43233, CVE-2026-43237, CVE-2026-45878, CVE-2026-45991, CVE-2026-46120, CVE-2026-52991, CVE-2026-53136, CVE-2026-53143, CVE-2026-53189, CVE-2026-53329, CVE-2026-53356, CVE-2026-53374, CVE-2026-63879, CVE-2026-63884, CVE-2026-63888, CVE-2026-63952, CVE-2026-64007, CVE-2026-64048, CVE-2026-64219, CVE-2026-64379, CVE-2026-64382, CVE-2026-64386, CVE-2026-64560, CVE-2026-68343, CVE-2026-68388, RHSA-2026:59723, CVE-2025-68211, CVE-2026-23003, CVE-2026-43114, CVE-2026-52920, CVE-2026-52924, CVE-2026-53131, CVE-2026-53185, CVE-2026-53268, CVE-2026-64189, CVE-2026-64191, CVE-2026-64276, CVE-2026-64277, and CVE-2026-74581.
- Red Hat OpenShift 4.19.45
- For more information, see the change logs.
- Red Hat CoreOS 4.19.45
- For more information, see the change logs.
- HAProxy 32e7011201fc5fceab21338da7c0a2dfead3b185
- Resolves the following CVEs: CVE-2026-11824, CVE-2026-11979, CVE-2026-8286, and CVE-2026-11822.
25 August 2026, Worker node fix pack 4.19.43_1590_openshift
The following list shows the components included in the worker node fix pack 4.19.43_1590_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-687.39.1.el9_8
- Resolves the following CVEs: RHSA-2026:54510, CVE-2026-10723, CVE-2026-11331, CVE-2026-11622, CVE-2026-11721, CVE-2026-13204, CVE-2026-13321, RHSA-2026:55439, CVE-2026-1965, CVE-2026-3783, CVE-2026-8286, CVE-2026-9547, RHSA-2026:54571, CVE-2026-15816, RHSA-2026:55772, CVE-2026-55203, CVE-2026-55204, RHSA-2026:53844, CVE-2026-44943, CVE-2026-44944, RHSA-2026:53847, CVE-2026-55995, RHSA-2026:53329, CVE-2025-54518, CVE-2026-31530, CVE-2026-64368, CVE-2026-64531, RHSA-2026:54443, CVE-2026-53202, CVE-2026-53264, RHSA-2026:54268, CVE-2026-11940, RHSA-2026:55440, CVE-2026-15588, CVE-2026-58010, CVE-2026-58011, CVE-2026-58012, CVE-2026-58013, CVE-2026-58014, CVE-2026-58015, RHSA-2026:57610, CVE-2026-72693, RHSA-2026:51035, CVE-2026-23415, CVE-2026-43450, RHSA-2026:52674, CVE-2026-14164, RHSA-2026:54662, CVE-2026-58055, RHSA-2026:54484, and CVE-2026-45409.
- RHEL 9 (Satellite) 5.14.0-687.39.1.el9_8
- Kernel updates.
- RHEL 9 (Classic) 5.14.0-687.39.1.el9_8
- Resolves the following CVEs: RHSA-2026:54510, CVE-2026-10723, CVE-2026-11331, CVE-2026-11622, CVE-2026-11721, CVE-2026-13204, CVE-2026-13321, RHSA-2026:55439, CVE-2026-1965, CVE-2026-3783, CVE-2026-8286, CVE-2026-9547, RHSA-2026:54571, CVE-2026-15816, RHSA-2026:55772, CVE-2026-55203, CVE-2026-55204, RHSA-2026:53844, CVE-2026-44943, CVE-2026-44944, RHSA-2026:53847, CVE-2026-55995, RHSA-2026:53329, CVE-2025-54518, CVE-2026-31530, CVE-2026-64368, CVE-2026-64531, RHSA-2026:54443, CVE-2026-53202, CVE-2026-53264, RHSA-2026:54268, CVE-2026-11940, RHSA-2026:55440, CVE-2026-15588, CVE-2026-58010, CVE-2026-58011, CVE-2026-58012, CVE-2026-58013, CVE-2026-58014, CVE-2026-58015, RHSA-2026:57610, CVE-2026-72693, RHSA-2026:51035, CVE-2026-23415, CVE-2026-43450, RHSA-2026:52674, CVE-2026-14164, RHSA-2026:54662, CVE-2026-58055, RHSA-2026:54484, and CVE-2026-45409.
- Red Hat OpenShift 4.19.43
- For more information, see the change logs.
- Red Hat CoreOS 4.19.43
- For more information, see the change logs.
- HAProxy a70e8a8452c4d476687ad749df47b6f27a61851a
- Resolves the following CVEs: CVE-2026-54411, CVE-2026-54371, CVE-2026-55204, and CVE-2026-58055.
12 August 2026, Worker node fix pack 4.19.41_1589_openshift
The following list shows the components included in the worker node fix pack 4.19.41_1589_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-687.34.1.el9_8
- Resolves the following CVEs: RHSA-2026:44385, CVE-2024-46738, CVE-2024-50076, CVE-2025-39982, CVE-2026-31488, CVE-2026-31613, CVE-2026-31684, CVE-2026-46116, CVE-2026-46209, RHSA-2026:49031, CVE-2025-10263, CVE-2025-40026, CVE-2026-52923, RHSA-2026:49839, CVE-2026-14474, CVE-2026-14476, RHSA-2026:48811, CVE-2026-48864, RHSA-2026:49910, and CVE-2026-29111.
- RHEL 9 (Satellite) 5.14.0-687.34.1.el9_8
- Kernel updates.
- RHEL 9 (Classic) 5.14.0-687.34.1.el9_8
- Resolves the following CVEs: RHSA-2026:44385, CVE-2024-46738, CVE-2024-50076, CVE-2025-39982, CVE-2026-31488, CVE-2026-31613, CVE-2026-31684, CVE-2026-46116, CVE-2026-46209, RHSA-2026:49031, CVE-2025-10263, CVE-2025-40026, CVE-2026-52923, RHSA-2026:49839, CVE-2026-14474, CVE-2026-14476, RHSA-2026:48811, CVE-2026-48864, RHSA-2026:49910, and CVE-2026-29111.
- Red Hat OpenShift 4.19.41
- For more information, see the change logs.
- Red Hat CoreOS 4.19.41
- For more information, see the change logs.
- HAProxy bd7e64ef86b90455535107263466d1825f3e7f9f
- Resolves the following CVEs: CVE-2026-56391, and CVE-2026-56392.
05 August 2026, Master fix pack 4.19.41_1588_openshift
The following list shows the components that are in the master fix pack 4.19.41_1588_openshift. Master patch updates are applied automatically.
- Cluster health image v1.6.17
- New version contains updates and security fixes.
- etcd v3.5.32
- See the etcd release notes.
- IBM Cloud Block Storage driver and plug-in v2.5.27
- New version contains updates and security fixes.
- IBM Cloud Controller Manager v1.32.13-20
- New version contains updates and security fixes.
- IBM Cloud File Storage for Classic plug-in and monitor v456
- New version contains updates and security fixes.
- IBM Cloud RBAC Operator 92ba7dd
- New version contains updates and security fixes.
- Key Management Service provider 2.10.28
- New version contains updates and security fixes.
- Portieris admission controller v0.14.2
- See the Portieris admission controller release notes
- Red Hat OpenShift on IBM Cloud 4.19.41
- See the Red Hat OpenShift on IBM Cloud release notes.Resolves the following CVEs: CVE-2026-16242.
28 July 2026, Worker node fix pack 4.19.39_1587_openshift
The following list shows the components included in the worker node fix pack 4.19.39_1587_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-570.128.1.el9_6
- Resolves the following CVEs: RHSA-2026:38902, CVE-2025-68183, CVE-2026-31408, CVE-2026-43074, CVE-2026-43279, CVE-2026-45984, CVE-2026-46135, CVE-2026-46152, CVE-2026-46189, CVE-2026-46242, CVE-2026-46316, CVE-2026-53359, RHSA-2026:44385, CVE-2024-46738, CVE-2024-50076, CVE-2025-39982, CVE-2026-31488, CVE-2026-31613, CVE-2026-31684, CVE-2026-46116, CVE-2026-46209, RHSA-2026:40425, CVE-2026-43499, CVE-2026-53166, and CVE-2026-64600.
- RHEL 9 (Satellite) 5.14.0-570.62.1.el9_6
- Kernel updates.
- RHEL 9 (Classic) 5.14.0-570.128.1.el9_6
- Resolves the following CVEs: RHSA-2026:38902, CVE-2025-68183, CVE-2026-31408, CVE-2026-43074, CVE-2026-43279, CVE-2026-45984, CVE-2026-46135, CVE-2026-46152, CVE-2026-46189, CVE-2026-46242, CVE-2026-46316, CVE-2026-53359, RHSA-2026:44385, CVE-2024-46738, CVE-2024-50076, CVE-2025-39982, CVE-2026-31488, CVE-2026-31613, CVE-2026-31684, CVE-2026-46116, CVE-2026-46209, RHSA-2026:40425, CVE-2026-43499, CVE-2026-53166, and CVE-2026-64600.
- Red Hat OpenShift 4.19.39
- For more information, see the change logs.
- Red Hat CoreOS 4.19.39
- For more information, see the change logs.
- HAProxy 346c7130717ef7cc25d1dfbca7d57ca32396b692
- Resolves the following CVEs: CVE-2026-6238, CVE-2026-5928, CVE-2026-48864, CVE-2026-54370, CVE-2026-28390, CVE-2026-5435, CVE-2025-13151, CVE-2026-54369, CVE-2026-58016, and CVE-2025-6170.
28 July 2026, Master fix pack 4.19.34_1585_openshift
The following list shows the components that are in the master fix pack 4.19.34_1585_openshift. Master patch updates are applied automatically.
- Cluster health image v1.6.17
- New version contains updates and security fixes.
- etcd v3.5.30
- See the etcd release notes.
- IBM Cloud Block Storage driver and plug-in v2.5.26
- New version contains updates and security fixes.
- IBM Cloud Controller Manager v1.32.13-18
- New version contains updates and security fixes.
- IBM Cloud File Storage for Classic plug-in and monitor v455
- New version contains updates and security fixes.
- IBM Cloud RBAC Operator 92ba7dd
- New version contains updates and security fixes.
- Key Management Service provider 2.10.27
- New version contains updates and security fixes.
- Portieris admission controller v0.14.2
- See the Portieris admission controller release notes
- Red Hat OpenShift on IBM Cloud 4.19.34
- See the Red Hat OpenShift on IBM Cloud release notes.
13 July 2026, Worker node fix pack 4.19.37_1586_openshift
The following list shows the components included in the worker node fix pack 4.19.37_1586_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-570.125.1.el9_6
- Resolves the following CVEs: RHSA-2026:30004, CVE-2026-33845, CVE-2026-33846, CVE-2026-3833, CVE-2026-42009, CVE-2026-42010, CVE-2026-42011, CVE-2026-42012, CVE-2026-42013, CVE-2026-42014, CVE-2026-42015, CVE-2026-5260, CVE-2026-5419, RHSA-2026:34094, CVE-2025-21648, CVE-2025-21691, CVE-2026-23191, CVE-2026-31669, CVE-2026-43027, CVE-2026-43125, CVE-2026-43128, CVE-2026-43198, CVE-2026-43329, CVE-2026-43414, CVE-2026-43501, CVE-2026-45852, CVE-2026-46090, CVE-2026-46173, CVE-2026-46176, CVE-2026-46181, CVE-2026-46227, CVE-2026-46244, RHSA-2026:28147, CVE-2026-28847, CVE-2026-28883, CVE-2026-28901, CVE-2026-28902, CVE-2026-28903, CVE-2026-28904, CVE-2026-28905, CVE-2026-28907, CVE-2026-28942, CVE-2026-28946, CVE-2026-28947, CVE-2026-28953, CVE-2026-28955, CVE-2026-28958, CVE-2026-43658, CVE-2026-43660, RHSA-2026:33634, CVE-2024-34459, RHSA-2026:33230, CVE-2026-5450, RHSA-2026:28832, and CVE-2026-31790.
- RHEL 9 (Satellite) 5.14.0-570.62.1.el9_6
- Kernel updates.
- RHEL 9 (Classic) 5.14.0-570.125.1.el9_6
- Resolves the following CVEs: RHSA-2026:30004, CVE-2026-33845, CVE-2026-33846, CVE-2026-3833, CVE-2026-42009, CVE-2026-42010, CVE-2026-42011, CVE-2026-42012, CVE-2026-42013, CVE-2026-42014, CVE-2026-42015, CVE-2026-5260, CVE-2026-5419, RHSA-2026:34094, CVE-2025-21648, CVE-2025-21691, CVE-2026-23191, CVE-2026-31669, CVE-2026-43027, CVE-2026-43125, CVE-2026-43128, CVE-2026-43198, CVE-2026-43329, CVE-2026-43414, CVE-2026-43501, CVE-2026-45852, CVE-2026-46090, CVE-2026-46173, CVE-2026-46176, CVE-2026-46181, CVE-2026-46227, CVE-2026-46244, RHSA-2026:28147, CVE-2026-28847, CVE-2026-28883, CVE-2026-28901, CVE-2026-28902, CVE-2026-28903, CVE-2026-28904, CVE-2026-28905, CVE-2026-28907, CVE-2026-28942, CVE-2026-28946, CVE-2026-28947, CVE-2026-28953, CVE-2026-28955, CVE-2026-28958, CVE-2026-43658, CVE-2026-43660, RHSA-2026:33634, CVE-2024-34459, RHSA-2026:33230, CVE-2026-5450, RHSA-2026:28832, and CVE-2026-31790.
- Red Hat OpenShift 4.19.37
- For more information, see the change logs.
- Red Hat CoreOS 4.19.37
- For more information, see the change logs.
- HAProxy 27f76d0c7626993cde6e1ff90fa42253718cc5fa
- Resolves the following CVEs: CVE-2026-5450.
01 July 2026, Worker node fix pack 4.19.35_1584_openshift
The following list shows the components included in the worker node fix pack 4.19.35_1584_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-570.123.1.el9_6
- Resolves the following CVEs: RHSA-2026:24500, CVE-2026-1519, RHSA-2026:23224, CVE-2025-38653, CVE-2025-39766, CVE-2025-68366, CVE-2026-23210, CVE-2026-23270, CVE-2026-23392, CVE-2026-31419, CVE-2026-31607, CVE-2026-31685, CVE-2026-31709, CVE-2026-43037, CVE-2026-43038, CVE-2026-43163, RHSA-2026:25218, CVE-2025-40135, CVE-2025-40158, CVE-2025-40170, CVE-2025-68724, CVE-2025-71089, CVE-2025-71116, CVE-2026-22984, CVE-2026-22990, CVE-2026-23216, CVE-2026-23455, CVE-2026-31508, CVE-2026-43110, CVE-2026-43190, RHSA-2026:27708, CVE-2025-40064, CVE-2025-40168, CVE-2026-23136, CVE-2026-43116, CVE-2026-43158, CVE-2026-43303, CVE-2026-45898, CVE-2026-46125, CVE-2026-46166, CVE-2026-46243, CVE-2026-46323, CVE-2026-46331, RHSA-2026:24683, CVE-2026-40356, RHSA-2026:24337, CVE-2026-32280, CVE-2026-32281, CVE-2026-32282, CVE-2026-32283, RHSA-2026:25979, CVE-2026-1933, CVE-2026-2340, CVE-2026-3012, CVE-2026-4408, CVE-2026-4480, RHSA-2026:28050, CVE-2026-34982, CVE-2026-35177, CVE-2026-41411, and CVE-2026-46483.
- RHEL 9 (Satellite) 5.14.0-570.62.1.el9_6
- Kernel updates.
- RHEL 9 (Classic) 5.14.0-570.123.1.el9_6
- Resolves the following CVEs: RHSA-2026:24500, CVE-2026-1519, RHSA-2026:23224, CVE-2025-38653, CVE-2025-39766, CVE-2025-68366, CVE-2026-23210, CVE-2026-23270, CVE-2026-23392, CVE-2026-31419, CVE-2026-31607, CVE-2026-31685, CVE-2026-31709, CVE-2026-43037, CVE-2026-43038, CVE-2026-43163, RHSA-2026:25218, CVE-2025-40135, CVE-2025-40158, CVE-2025-40170, CVE-2025-68724, CVE-2025-71089, CVE-2025-71116, CVE-2026-22984, CVE-2026-22990, CVE-2026-23216, CVE-2026-23455, CVE-2026-31508, CVE-2026-43110, CVE-2026-43190, RHSA-2026:27708, CVE-2025-40064, CVE-2025-40168, CVE-2026-23136, CVE-2026-43116, CVE-2026-43158, CVE-2026-43303, CVE-2026-45898, CVE-2026-46125, CVE-2026-46166, CVE-2026-46243, CVE-2026-46323, CVE-2026-46331, RHSA-2026:24683, CVE-2026-40356, RHSA-2026:24337, CVE-2026-32280, CVE-2026-32281, CVE-2026-32282, CVE-2026-32283, RHSA-2026:25979, CVE-2026-1933, CVE-2026-2340, CVE-2026-3012, CVE-2026-4408, CVE-2026-4480, RHSA-2026:28050, CVE-2026-34982, CVE-2026-35177, CVE-2026-41411, and CVE-2026-46483.
- Red Hat OpenShift 4.19.35
- For more information, see the change logs.
- Red Hat CoreOS 4.19.35
- For more information, see the change logs.
- HAProxy 119de539a7da3c92449b38e1531722802988e50c
- Resolves the following CVEs: CVE-2026-45447, CVE-2024-4741, and CVE-2024-34459.
26 June 2026, Master fix pack 4.19.32_1582_openshift
The following list shows the components that are in the master fix pack 4.19.32_1582_openshift. Master patch updates are applied automatically.
- Cluster health image v1.6.16
- New version contains updates and security fixes.
- etcd v3.5.30
- See the etcd release notes.
- IBM Cloud Block Storage driver and plug-in v2.5.26
- New version contains updates and security fixes.
- IBM Cloud Controller Manager v1.32.13-13
- New version contains updates and security fixes.
- IBM Cloud File Storage for Classic plug-in and monitor v455
- New version contains updates and security fixes.
- Key Management Service provider 2.10.25
- New version contains updates and security fixes.
- Portieris admission controller v0.14.0
- See the Portieris admission controller release notes
- Red Hat OpenShift on IBM Cloud 4.19.32
- See the Red Hat OpenShift on IBM Cloud release notes.
15 June 2026, Worker node fix pack 4.19.33_1583_openshift
The following list shows the components included in the worker node fix pack 4.19.33_1583_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-570.116.1.el9_6
- Resolves the following CVEs: CVE-2026-5119.
- RHEL 9 (Satellite) 5.14.0-570.62.1.el9_6
- Kernel updates.
RHEL 9 (Classic) 5.14.0-570.116.1.el9_6 :
- Red Hat OpenShift 4.19.33
- For more information, see the change logs.
- Red Hat CoreOS 4.19.33
- For more information, see the change logs.
- HAProxy d4656f400ca14059e1b5b8ef8078b4903290791a
- Resolves the following CVEs: CVE-2026-45186.
03 June 2026, Worker node fix pack 4.19.32_1581_openshift
The following list shows the components included in the worker node fix pack 4.19.32_1581_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-570.116.1.el9_6
- Resolves the following CVEs: RHSA-2026:21392, CVE-2026-4802, RHSA-2026:18042, CVE-2026-39979, CVE-2026-40164, RHSA-2026:16312, CVE-2026-43284, RHSA-2026:20129, CVE-2026-46300, CVE-2026-46333, RHSA-2026:19458, CVE-2026-4878, RHSA-2026:18031, CVE-2026-41651, RHSA-2026:19576, CVE-2026-4786, CVE-2026-6100, RHSA-2026:20603, CVE-2024-12086, CVE-2025-10158, CVE-2026-41035, RHSA-2026:19457, CVE-2025-14087, CVE-2025-14512, RHSA-2026:20548, and CVE-2026-33416.
- RHEL 9 (Satellite) 5.14.0-570.62.1.el9_6
- Kernel updates.
- RHEL 9 (Classic) 5.14.0-570.116.1.el9_6
- Resolves the following CVEs: RHSA-2026:18042, CVE-2026-39979, CVE-2026-40164, RHSA-2026:16312, CVE-2026-43284, RHSA-2026:20129, CVE-2026-46300, CVE-2026-46333, RHSA-2026:19458, CVE-2026-4878, RHSA-2026:19576, CVE-2026-4786, CVE-2026-6100, RHSA-2026:19457, CVE-2025-14087, CVE-2025-14512, RHSA-2026:20548, and CVE-2026-33416.
- Red Hat OpenShift 4.19.32
- For more information, see the change logs.
- Red Hat CoreOS 4.19.32
- For more information, see the change logs.
- HAProxy 0e0730588ba21878845cdb0bee615a371a489a02
- Resolves the following CVEs: CVE-2026-4046, CVE-2026-33846, CVE-2026-42010, CVE-2026-5260, CVE-2026-42014, CVE-2026-3833, CVE-2026-42015, CVE-2026-33845, CVE-2026-42011, CVE-2026-42009, CVE-2026-42013, and CVE-2026-42012.
22 May 2026, Master fix pack 4.19.30_1579_openshift
The following list shows the components that are in the master fix pack 4.19.30_1579_openshift. Master patch updates are applied automatically.
- IBM Cloud Controller Manager v1.32.13-10
- New version contains updates and security fixes.
- Key Management Service provider 2.10.24
- New version contains updates and security fixes.
- Portieris admission controller v0.13.38
- See the Portieris admission controller release notes
- Red Hat OpenShift on IBM Cloud 4.19.30
- See the Red Hat OpenShift on IBM Cloud release notes.
20 May 2026, Worker node fix pack 4.19.31_1580_openshift
The following list shows the components included in the worker node fix pack 4.19.31_1580_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-570.112.1.el9_6
- Resolves the following CVEs: RHSA-2025:22392, CVE-2025-38724, CVE-2025-39864, CVE-2025-39881, CVE-2025-39883, CVE-2025-39918, CVE-2025-39955, CVE-2025-40186, RHSA-2026:0457, CVE-2025-23142, CVE-2025-39806, CVE-2025-39981, CVE-2025-39983, CVE-2025-40176, CVE-2025-68287, RHSA-2026:0804, CVE-2025-21795, CVE-2025-37849, CVE-2025-37891, CVE-2025-39697, CVE-2025-40154, CVE-2025-68285, RHSA-2026:14339, CVE-2024-53216, CVE-2025-68741, CVE-2026-23243, CVE-2026-23401, CVE-2026-31431, CVE-2026-31532, CVE-2026-43077, RHSA-2026:16312, CVE-2026-43284, RHSA-2026:1703, CVE-2025-21863, CVE-2025-40248, CVE-2025-68301, RHSA-2026:16059, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414, RHSA-2026:13889, CVE-2026-35535, RHSA-2025:21563, CVE-2024-56690, RHSA-2025:21933, CVE-2025-39898, CVE-2025-39971, CVE-2025-39973, CVE-2025-40047, RHSA-2025:22802, CVE-2025-39966, RHSA-2025:23789, CVE-2025-39843, CVE-2025-39925, RHSA-2026:11313, CVE-2026-23097, CVE-2026-31402, RHSA-2026:1194, CVE-2023-53034, CVE-2025-37761, CVE-2025-37789, CVE-2025-37819, CVE-2025-37869, CVE-2025-38289, CVE-2025-40141, CVE-2025-40251, CVE-2025-40258, CVE-2025-40277, CVE-2025-40318, RHSA-2026:2352, CVE-2024-54456, CVE-2025-21647, CVE-2025-21786, CVE-2025-21791, CVE-2025-38022, CVE-2025-38051, CVE-2025-38568, CVE-2025-40294, CVE-2025-40322, CVE-2025-68349, RHSA-2026:2759, CVE-2025-37882, CVE-2025-38349, CVE-2025-38730, CVE-2025-39760, CVE-2025-39933, CVE-2025-40269, CVE-2025-40271, CVE-2025-40304, RHSA-2026:3088, CVE-2025-37861, CVE-2025-38106, CVE-2025-38415, RHSA-2026:3520, CVE-2025-38154, RHSA-2026:4011, CVE-2024-47727, CVE-2024-56603, CVE-2025-22056, CVE-2025-38024, CVE-2025-38129, CVE-2025-38141, CVE-2025-38703, RHSA-2026:4745, CVE-2024-53229, CVE-2025-38206, CVE-2025-40240, CVE-2025-68811, CVE-2025-71085, RHSA-2026:5197, CVE-2025-38248, CVE-2026-23001, RHSA-2026:6164, CVE-2024-56645, CVE-2025-40096, CVE-2025-68800, CVE-2026-23209, RHSA-2026:6940, CVE-2025-38180, CVE-2026-23231, RHSA-2026:9112, CVE-2026-23066, CVE-2026-23111, CVE-2026-23144, CVE-2026-23171, CVE-2026-23193, CVE-2026-23204, RHSA-2026:17524, and CVE-2026-33636.
- RHEL 9 (Classic) 5.14.0-570.112.1.el9_6
- Resolves the following CVEs: RHSA-2026:2229, CVE-2025-6176, RHSA-2025:21773, CVE-2025-59375, RHSA-2026:1229, CVE-2025-68973, RHSA-2026:18042, CVE-2026-39979, CVE-2026-40164, RHSA-2025:22392, CVE-2025-38724, CVE-2025-39864, CVE-2025-39881, CVE-2025-39883, CVE-2025-39918, CVE-2025-39955, CVE-2025-40186, RHSA-2026:0457, CVE-2025-23142, CVE-2025-39806, CVE-2025-39981, CVE-2025-39983, CVE-2025-40176, CVE-2025-68287, RHSA-2026:0804, CVE-2025-21795, CVE-2025-37849, CVE-2025-37891, CVE-2025-39697, CVE-2025-40154, CVE-2025-68285, RHSA-2026:14339, CVE-2024-53216, CVE-2025-68741, CVE-2026-23243, CVE-2026-23401, CVE-2026-31431, CVE-2026-31532, CVE-2026-43077, RHSA-2026:16312, CVE-2026-43284, RHSA-2026:1703, CVE-2025-21863, CVE-2025-40248, CVE-2025-68301, RHSA-2026:7105, CVE-2026-4111, RHSA-2026:8866, CVE-2026-4424, CVE-2026-5121, RHSA-2026:19458, CVE-2026-4878, RHSA-2026:0210, CVE-2025-64720, CVE-2025-65018, CVE-2025-66293, RHSA-2026:3576, CVE-2026-22695, CVE-2026-22801, CVE-2026-25646, RHSA-2026:8548, CVE-2026-27135, RHSA-2026:16059, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414, RHSA-2026:9415, CVE-2026-3497, RHSA-2026:1503, CVE-2025-15467, CVE-2025-69419, RHSA-2026:1729, CVE-2025-66418, CVE-2025-66471, CVE-2026-21441, RHSA-2026:9354, CVE-2026-4519, RHSA-2025:21067, CVE-2025-11561, RHSA-2026:13889, CVE-2026-35535, RHSA-2026:6539, CVE-2026-25749, CVE-2026-28417, CVE-2026-28421, CVE-2026-33412, RHSA-2025:23400, CVE-2025-11083, RHSA-2025:23043, CVE-2025-9086, RHSA-2026:1465, CVE-2025-13601, RHSA-2026:19457, CVE-2025-14087, CVE-2025-14512, RHSA-2026:6630, CVE-2025-14831, RHSA-2026:4823, CVE-2025-61662, RHSA-2025:21563, CVE-2024-56690, RHSA-2025:21933, CVE-2025-39898, CVE-2025-39971, CVE-2025-39973, CVE-2025-40047, RHSA-2025:22802, CVE-2025-39966, RHSA-2025:23789, CVE-2025-39843, CVE-2025-39925, RHSA-2026:11313, CVE-2026-23097, CVE-2026-31402, RHSA-2026:1194, CVE-2023-53034, CVE-2025-37761, CVE-2025-37789, CVE-2025-37819, CVE-2025-37869, CVE-2025-38289, CVE-2025-40141, CVE-2025-40251, CVE-2025-40258, CVE-2025-40277, CVE-2025-40318, RHSA-2026:2352, CVE-2024-54456, CVE-2025-21647, CVE-2025-21786, CVE-2025-21791, CVE-2025-38022, CVE-2025-38051, CVE-2025-38568, CVE-2025-40294, CVE-2025-40322, CVE-2025-68349, RHSA-2026:2759, CVE-2025-37882, CVE-2025-38349, CVE-2025-38730, CVE-2025-39760, CVE-2025-39933, CVE-2025-40269, CVE-2025-40271, CVE-2025-40304, RHSA-2026:3088, CVE-2025-37861, CVE-2025-38106, CVE-2025-38415, RHSA-2026:3520, CVE-2025-38154, RHSA-2026:4011, CVE-2024-47727, CVE-2024-56603, CVE-2025-22056, CVE-2025-38024, CVE-2025-38129, CVE-2025-38141, CVE-2025-38703, RHSA-2026:4745, CVE-2024-53229, CVE-2025-38206, CVE-2025-40240, CVE-2025-68811, CVE-2025-71085, RHSA-2026:5197, CVE-2025-38248, CVE-2026-23001, RHSA-2026:6164, CVE-2024-56645, CVE-2025-40096, CVE-2025-68800, CVE-2026-23209, RHSA-2026:6940, CVE-2025-38180, CVE-2026-23231, RHSA-2026:9112, CVE-2026-23066, CVE-2026-23111, CVE-2026-23144, CVE-2026-23171, CVE-2026-23193, CVE-2026-23204, RHSA-2026:17524, CVE-2026-33636, RHSA-2026:0428, CVE-2025-5987, RHSA-2025:22377, CVE-2025-9714, RHSA-2026:3941, CVE-2025-12801, RHSA-2026:0693, CVE-2025-61984, CVE-2025-61985, RHSA-2025:21174, CVE-2025-9230, RHSA-2026:2275, CVE-2025-12084, RHSA-2026:5218, CVE-2025-15366, CVE-2025-15367, CVE-2026-1299, RHSA-2026:0435, and CVE-2025-45582.
- RHEL 9 (Satellite) 5.14.0-570.62.1.el9_6
- Kernel updates.
- Red Hat OpenShift 4.19.31
- For more information, see the change logs.
- Red Hat CoreOS 4.19.31
- For more information, see the change logs.
- HAProxy 6ba93946d8bd08ba581321189c719ab548cadf01
- Resolves the following CVEs: CVE-2025-9714, CVE-2026-4424, CVE-2026-40356, CVE-2025-14512, CVE-2026-4878, CVE-2026-40355, CVE-2026-5121, and CVE-2025-14087.
04 May 2026, Worker node fix pack 4.19.29_1577_openshift
The following list shows the components included in the worker node fix pack 4.19.29_1577_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-570.62.1.el9_6
- Resolves the following CVEs: RHSA-2026:9415, CVE-2026-3497, RHSA-2026:11313, CVE-2026-23097, CVE-2026-31402, RHSA-2026:11329, CVE-2025-43213, CVE-2025-43214, CVE-2025-43457, CVE-2025-43511, CVE-2025-46299, CVE-2026-20608, CVE-2026-20635, CVE-2026-20636, CVE-2026-20643, CVE-2026-20644, CVE-2026-20652, CVE-2026-20664, CVE-2026-20665, CVE-2026-20676, CVE-2026-20691, CVE-2026-28857, CVE-2026-28859, CVE-2026-28871, and mitigates CVE-2026-31431.
- RHEL 9 (Classic) 5.14.0-570.62.1.el9_6
- Resolves the following CVEs: RHSA-2026:9415, CVE-2026-3497, RHSA-2026:11313, CVE-2026-23097, CVE-2026-31402, RHSA-2026:11329, CVE-2025-43213, CVE-2025-43214, CVE-2025-43457, CVE-2025-43511, CVE-2025-46299, CVE-2026-20608, CVE-2026-20635, CVE-2026-20636, CVE-2026-20643, CVE-2026-20644, CVE-2026-20652, CVE-2026-20664, CVE-2026-20665, CVE-2026-20676, CVE-2026-20691, CVE-2026-28857, CVE-2026-28859, CVE-2026-28871, and mitigates CVE-2026-31431.
- Red Hat OpenShift 4.19.29
- For more information, see the change logs.
- Red Hat CoreOS 4.19.29
- For more information, see the change logs. Includes mitigation for CVE-2026-31431.
- HAProxy c7e825675cbd75e8433801c99f8aca3b207a5a46
- Resolves the following CVEs: CVE-2026-5121, CVE-2025-9714, and CVE-2026-4424.
27 April 2026, Master fix pack 4.19.25_1576_openshift
The following list shows the components that are in the master fix pack 4.19.25_1576_openshift. Master patch updates are applied automatically.
- Calico v3.30.7
- See the Calico release notes.
- Cluster health image v1.6.15
- New version contains updates and security fixes.
- etcd v3.5.29
- See the etcd release notes.
- IBM Cloud Block Storage driver and plug-in v2.5.25
- New version contains updates and security fixes.
- IBM Cloud Controller Manager v1.32.13-5
- New version contains updates and security fixes.
- IBM Cloud File Storage for Classic plug-in and monitor v454
- New version contains updates and security fixes.
- IBM Cloud RBAC Operator 6212368
- New version contains updates and security fixes.
- Key Management Service provider 2.10.23
- New version contains updates and security fixes.
- Load balancer and load balancer monitor for IBM Cloud Provider 3563
- New version contains updates and security fixes.
- Portieris admission controller v0.13.37
- See the Portieris admission controller release notes
- Red Hat OpenShift on IBM Cloud 4.19.25
- See the Red Hat OpenShift on IBM Cloud release notes.
- Tigera Operator v1.38.13
- See the Tigera Operator release notes.
20 April 2026, Worker node fix pack 4.19.28_1574_openshift
The following list shows the components included in the worker node fix pack 4.19.28_1574_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
RHEL 9 (VPC) 5.14.0-570.62.1.el9_6 :
RHEL 9 (Classic) 5.14.0-570.62.1.el9_6 :
- Red Hat OpenShift 4.19.28
- For more information, see the change logs.
- Red Hat CoreOS 4.19.28
- For more information, see the change logs.
- HAProxy c7e825675cbd75e8433801c99f8aca3b207a5a46
- Resolves the following CVEs: CVE-2026-27135.
06 April 2026, Worker node fix pack 4.19.27_1573_openshift
The following list shows the components included in the worker node fix pack 4.19.27_1573_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-570.62.1.el9_6
- CIS benchmark compliance 5.4.2.4
- RHEL 9 (Classic) 5.14.0-570.62.1.el9_6
- CIS benchmark compliance 5.4.2.4
- Red Hat OpenShift 4.19.27
- For more information, see the change logs.
- Red Hat CoreOS 4.19.27
- For more information, see the change logs.
- HAProxy 91cc06f4e0a123d06f5ee7c226df6fb83e1ca223
- Resolves the following CVEs: CVE-2025-14831, and CVE-2025-9820.
24 March 2026, Worker node fix pack 4.19.26_1572_openshift
The following list shows the components included in the worker node fix pack 4.19.26_1572_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
RHEL 9 (VPC) 5.14.0-570.62.1.el9_6 :
RHEL 9 (Classic) 5.14.0-570.62.1.el9_6 :
- Red Hat OpenShift 4.19.26
- For more information, see the change logs.
- Red Hat CoreOS 4.19.26
- For more information, see the change logs. CIS benchmark compliance 3.4.2.3.
- HAProxy 10c8639e6b5829d0af51a22755e13756f34630cf
- Resolves the following CVEs: CVE-2025-15281, and CVE-2026-0915.
11 March 2026, Worker node fix pack 4.19.24_1570_openshift
The following list shows the components included in the worker node fix pack 4.19.24_1570_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
RHEL 9 (VPC) 5.14.0-570.62.1.el9_6 :
- RHEL 9 (Classic) 5.14.0-570.62.1.el9_6
- Resolves the following CVEs: RHSA-2025:23241, CVE-2025-38499, CVE-2025-39966, CVE-2025-40176, RHSA-2026:0793, CVE-2025-38703, CVE-2025-39933, CVE-2025-40277, CVE-2025-68285, CVE-2025-68287, RHSA-2026:1143, CVE-2025-38141, CVE-2025-38349, CVE-2025-38731, CVE-2025-40248, CVE-2025-40258, CVE-2025-40294, CVE-2025-68301, CVE-2025-68305, RHSA-2026:3405, CVE-2026-22695, CVE-2026-22801, CVE-2026-25646, RHSA-2025:20518, CVE-2022-48830, CVE-2022-49024, CVE-2022-49269, CVE-2022-49353, CVE-2022-49357, CVE-2022-49432, CVE-2022-49437, CVE-2022-49443, CVE-2022-49623, CVE-2022-49627, CVE-2022-49643, CVE-2022-49648, CVE-2022-49657, CVE-2022-49670, CVE-2022-49672, CVE-2022-49845, CVE-2022-50143, CVE-2023-54237, CVE-2023-54318, CVE-2024-36350, CVE-2024-36357, CVE-2024-46689, CVE-2024-46744, CVE-2024-47679, CVE-2024-47727, CVE-2024-49570, CVE-2024-49864, CVE-2024-50060, CVE-2024-50195, CVE-2024-50294, CVE-2024-52332, CVE-2024-53052, CVE-2024-53090, CVE-2024-53119, CVE-2024-53135, CVE-2024-53170, CVE-2024-53229, CVE-2024-53241, CVE-2024-53680, CVE-2024-54456, CVE-2024-56603, CVE-2024-56645, CVE-2024-56662, CVE-2024-56672, CVE-2024-56675, CVE-2024-56690, CVE-2024-56709, CVE-2024-56739, CVE-2024-56786, CVE-2024-57981, CVE-2024-57986, CVE-2024-57987, CVE-2024-57988, CVE-2024-57989, CVE-2024-57990, CVE-2024-57993, CVE-2024-57995, CVE-2024-57998, CVE-2024-58012, CVE-2024-58014, CVE-2024-58015, CVE-2024-58057, CVE-2024-58062, CVE-2024-58068, CVE-2024-58072, CVE-2024-58075, CVE-2024-58077, CVE-2024-58083, CVE-2024-58088, CVE-2025-21631, CVE-2025-21647, CVE-2025-21648, CVE-2025-21671, CVE-2025-21672, CVE-2025-21691, CVE-2025-21693, CVE-2025-21696, CVE-2025-21702, CVE-2025-21714, CVE-2025-21726, CVE-2025-21727, CVE-2025-21728, CVE-2025-21729, CVE-2025-21738, CVE-2025-21739, CVE-2025-21745, CVE-2025-21746, CVE-2025-21765, CVE-2025-21786, CVE-2025-21787, CVE-2025-21790, CVE-2025-21791, CVE-2025-21795, CVE-2025-21796, CVE-2025-21806, CVE-2025-21826, CVE-2025-21828, CVE-2025-21829, CVE-2025-21837, CVE-2025-21839, CVE-2025-21844, CVE-2025-21846, CVE-2025-21847, CVE-2025-21848, CVE-2025-21851, CVE-2025-21853, CVE-2025-21855, CVE-2025-21861, CVE-2025-21863, CVE-2025-21864, CVE-2025-21902, CVE-2025-22056, CVE-2025-22086, CVE-2025-22089, CVE-2025-22092, CVE-2025-22097, CVE-2025-22111, CVE-2025-22116, CVE-2025-22119, CVE-2025-23129, CVE-2025-37825, CVE-2025-37994, CVE-2025-38013, CVE-2025-38075, CVE-2025-38116, CVE-2025-38127, CVE-2025-38234, CVE-2025-38288, CVE-2025-38322, CVE-2025-38332, CVE-2025-38396, CVE-2025-38438, CVE-2025-38527, CVE-2026-23146, CVE-2026-23205, RHSA-2025:21112, CVE-2022-50087, CVE-2022-50367, CVE-2023-53331, CVE-2023-53373, CVE-2023-53494, CVE-2025-38566, CVE-2025-38571, CVE-2025-39702, CVE-2025-39718, CVE-2025-39817, CVE-2025-39841, CVE-2025-39849, CVE-2025-40300, RHSA-2025:21469, CVE-2025-38351, CVE-2025-38498, CVE-2025-39697, CVE-2025-39881, CVE-2025-39971, CVE-2025-39973, CVE-2025-39982, CVE-2025-39983, CVE-2025-40047, RHSA-2025:21926, CVE-2025-39843, RHSA-2025:22405, CVE-2025-38724, CVE-2025-39864, CVE-2025-39898, CVE-2025-39918, CVE-2025-39955, CVE-2025-39981, CVE-2025-40058, CVE-2025-40185, RHSA-2025:22865, CVE-2025-39925, CVE-2025-39979, RHSA-2026:0445, CVE-2025-39806, CVE-2025-39840, CVE-2025-39883, CVE-2025-40240, RHSA-2026:1617, CVE-2025-38568, CVE-2025-40154, CVE-2025-40251, RHSA-2026:2212, CVE-2025-37789, CVE-2025-37819, CVE-2025-38022, CVE-2025-38024, CVE-2025-38403, CVE-2025-38415, CVE-2025-38459, CVE-2025-38730, CVE-2025-39760, CVE-2025-40135, CVE-2025-40141, CVE-2025-40158, CVE-2025-40170, CVE-2025-40269, CVE-2025-40271, CVE-2025-40318, RHSA-2026:2722, CVE-2023-53034, CVE-2025-40064, CVE-2025-40304, CVE-2025-40322, CVE-2025-68349, CVE-2025-68811, CVE-2026-22998, RHSA-2026:3066, CVE-2025-38129, CVE-2025-38206, RHSA-2026:3488, CVE-2025-40168, CVE-2025-71085, CVE-2026-23097, RHSA-2026:3940, and CVE-2025-12801.
- Red Hat OpenShift 4.19.24
- For more information, see the change logs.
- Red Hat CoreOS 4.19.24
- For more information, see the change logs. CIS benchmark compliance 1.1.3.2, 1.1.3.3, 3.4.2, 4.2.2.3
- HAProxy 965c403695b15b3410d87a3772002edbc5ed2569
- Resolves the following CVEs: CVE-2025-69419.
24 February 2026, Worker node fix pack 4.19.24_1569_openshift
The following list shows the components included in the worker node fix pack 4.19.24_1569_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-570.62.1.el9_6
- CIS benchmark compliance 1.6.3
- RHEL 9 (Classic) 5.14.0-570.62.1.el9_6
- CIS benchmark compliance 1.6.3
- Red Hat OpenShift 4.19.24
- For more information, see the change logs.
- Red Hat CoreOS 4.19.24
- For more information, see the change logs. CIS benchmark compliance 5.2.2, 5.2.3, 5.2.4, 5.2.18
- HAProxy 2bf1aebe51a37cd9b4661656ce21e53f918166ea
- Resolves the following CVEs: CVE-2025-6176.
09 February 2026, Worker node fix pack 4.19.23_1567_openshift
The following list shows the components included in the worker node fix pack 4.19.23_1567_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-570.62.1.el9_6
- CIS benchmark compliance 1.6.6, 3.1.3, 4.1.2, 4.3.4, 5.3.2.1, 5.3.3.2.4, 5.3.3.2.7, 5.3.3.3.1, 5.3.3.4.2, 5.4.1.5, 5.4.2.5Resolves the following CVEs: RHSA-2025:19930, CVE-2024-36350, CVE-2024-36357, and CVE-2025-40300.
- RHEL 9 (Classic) 5.14.0-570.62.1.el9_6
- CIS benchmark compliance 1.6.6, 3.1.3, 4.1.2, 4.3.4, 5.3.2.1, 5.3.3.2.4, 5.3.3.2.7, 5.3.3.3.1, 5.3.3.4.2, 5.4.1.5, 5.4.2.5Resolves the following CVEs: RHSA-2025:19930, CVE-2024-36350, CVE-2024-36357, and CVE-2025-40300.
- Red Hat OpenShift 4.19.23
- For more information, see the change logs.
- Red Hat CoreOS 4.19.23
- For more information, see the change logs. CIS benchmark compliance 5.3.7, 5.5.1, 5.5.2, 5.5.3, 5.6.1.1, 5.6.1.4 ,5.6.5
- HAProxy ace947f4ecf45f28effe8d125ffda48f9890223b
- Resolves the following CVEs: CVE-2025-14104.
27 January 2026, Worker node fix pack 4.19.22_1566_openshift
The following list shows the components included in the worker node fix pack 4.19.22_1566_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 (VPC) 5.14.0-570.60.1.el9_6
- Beginning at this patch version, VPC worker nodes include the following changes: the local time is set to UTC, the root filesystem has changed from ext4 to XFS, and the boot mode has changed from BIOS to UEFI.
RHEL 9 (Classic) 5.14.0-570.60.1.el9_6 :
- Red Hat OpenShift 4.19.22
- For more information, see the change logs.
- Red Hat CoreOS 4.19.22
- For more information, see the change logs.
- HAProxy c9cb5ad988e916d184d1c308d4f2e5c502d99523
- Resolves the following CVEs: CVE-2025-68973, CVE-2025-13601, and CVE-2025-9230.
Master fix pack 4.19.21_1565_openshift, released 21 January 2026
The following list shows the changes that are in the master fix pack 4.19.21_1565_openshift. Master patch updates are applied automatically.
- Calico v3.29.7
- See the Calico release notes. Cluster health image v1.6.13
- New version contains updates and security fixes. etcd v3.5.26
- See the etcd release notes. IBM Cloud Controller Manager v1.32.11-2
- New version contains updates and security fixes. Key Management Service provider 2.10.20
- New version contains updates and security fixes. Portieris admission controller v0.13.33
- See the Portieris admission controller release notes. Red Hat OpenShift on IBM Cloud. 4.19.21
- See the Red Hat OpenShift on IBM Cloud release notes. Tigera Operator v1.36.16
- See the Tigera Operator release notes.
12 January 2026, Worker node fix pack 4.19.21_1559_openshift
The following list shows the components included in the worker node fix pack 4.19.21_1559_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
RHEL 9 5.14.0-570.60.1.el9_6 :
- Red Hat OpenShift 4.19.21
- For more information, see the change logs.
- Red Hat CoreOS 4.19.21
- For more information, see the change logs.
HAProxy d04e61c5b29aa5328bc72455edb95e08e8f6d85c :
29 December 2025, Worker node fix pack 4.19.21_1558_openshift
The following list shows the components included in the worker node fix pack 4.19.21_1558_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
RHEL 9 5.14.0-570.60.1.el9_6 :
- Red Hat OpenShift 4.19.21
- For more information, see the change logs.
- Red Hat CoreOS 4.19.21
- For more information, see the change logs.
- HAProxy d04e61c5b29aa5328bc72455edb95e08e8f6d85c
- Resolves the following CVEs: CVE-2025-9086.
16 December 2025, Worker node fix pack 4.19.21_1557_openshift
The following list shows the components included in the worker node fix pack 4.19.21_1557_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
RHEL 9 5.14.0-570.60.1.el9_6 :
- Red Hat OpenShift 4.19.21
- For more information, see the change logs.
- Red Hat CoreOS 4.19.21
- For more information, see the change logs.
HAProxy 03b74b82b63cd53403b6b587b84233c93edef18d :
Master fix pack 4.19.19_1556_openshift, released 10 December 2025
The following list shows the changes that are in the master fix pack 4.19.19_1556_openshift. Master patch updates are applied automatically.
- Cluster health image v1.6.13
- New version contains updates and security fixes. etcd v3.5.25
- See the etcd release notes. IBM Cloud Controller Manager v1.32.10-3
- New version contains updates and security fixes. Key Management Service provider 2.10.19
- New version contains updates and security fixes. Portieris admission controller v0.13.33
- See the Portieris admission controller release notes. Red Hat OpenShift on IBM Cloud. 4.19.19
- See the Red Hat OpenShift on IBM Cloud release notes.
03 December 2025, Worker node fix pack 4.19.19_1555_openshift
The following list shows the components included in the worker node fix pack 4.19.19_1555_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
RHEL 9 5.14.0-570.60.1.el9_6 :
- Red Hat OpenShift 4.19.19
- For more information, see the change logs.
- Red Hat CoreOS 4.19.19
- For more information, see the change logs.
- HAProxy 03b74b82b63cd53403b6b587b84233c93edef18d
- Resolves the following CVEs: CVE-2025-59375, CVE-2025-5372, CVE-2024-28757, and CVE-2022-23990.
17 November 2025, Worker node fix pack 4.19.18_1554_openshift
The following list shows the components included in the worker node fix pack 4.19.18_1554_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL 9 5.14.0-570.60.1.el9_6
- Resolves the following CVEs: RHSA-2025:19951, CVE-2025-40778, CVE-2025-40780, RHSA-2025:19105, CVE-2023-53331, CVE-2025-39718, CVE-2025-39730, CVE-2025-39751, CVE-2025-39819, RHSA-2025:19409, CVE-2022-50367, CVE-2023-53494, and CVE-2025-39702.
- Red Hat OpenShift 4.19.18
- For more information, see the change logs.
- Red Hat CoreOS 4.19.18
- For more information, see the change logs.
HAProxy fbe9b8146f23bbd12b2566a79fa897d5981e7273 :
Master fix pack 4.19.17_1553_openshift, released 15 November 2025
The following list shows the changes that are in the master fix pack 4.19.17_1553_openshift. Master patch updates are applied automatically.
- Calico v3.29.6
- See the Calico release notes. etcd v3.5.24
- See the etcd release notes. IBM Cloud Block Storage driver and plug-in v2.5.22
- New version contains updates and security fixes. IBM Cloud Controller Manager v1.32.9-6
- New version contains updates and security fixes. Key Management Service provider v2.10.18
- New version contains updates and security fixes. Portieris admission controller v0.13.31
- See the Portieris admission controller release notes. Red Hat OpenShift on IBM Cloud. 4.19.17
- See the Red Hat OpenShift on IBM Cloud release notes. Tigera Operator v1.36.14
- See the Tigera Operator release notes.
06 November 2025, Worker node fix pack 4.19.17_1551_openshift
The following list shows the components included in the worker node fix pack 4.19.17_1551_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL_9 5.14.0-570.55.1.el9_6
- Resolves the following CVEs: RHSA-2025:17377, CVE-2024-50301, CVE-2025-38351, CVE-2025-39761, RHSA-2025:17760, CVE-2023-53373, CVE-2025-38556, CVE-2025-38614, CVE-2025-39757, RHSA-2025:18281, CVE-2022-50087, CVE-2025-22026, CVE-2025-38566, CVE-2025-38571, CVE-2025-39817, CVE-2025-39841, and CVE-2025-39849.
- Red Hat OpenShift 4.19.17
- For more information, see the change logs.
- Red Hat CoreOS 4.19.17
- For more information, see the change logs. CIS benchmark compliance 5.1.14, 1.5.2, 1.7.2, 1.7.3
- HAProxy fbe9b8146f23bbd12b2566a79fa897d5981e7273
- Resolves the following CVEs: CVE-2025-5318.
21 October 2025, Worker node fix pack 4.19.16_1550_openshift
The following list shows the components included in the worker node fix pack 4.19.16_1550_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL_9 5.14.0-570.49.1.el9_6
- Resolves the following CVEs: RHSA-2025:10848, CVE-2024-6174, RHSA-2025:11462, CVE-2024-50349, CVE-2024-52006, CVE-2025-27613, CVE-2025-27614, CVE-2025-46835, CVE-2025-48384, CVE-2025-48385, RHSA-2025:10379, CVE-2022-49846, CVE-2025-21759, CVE-2025-21887, CVE-2025-22004, CVE-2025-37799, RHSA-2025:11411, CVE-2024-58002, CVE-2025-38089, RHSA-2025:12746, CVE-2022-49788, CVE-2025-21727, CVE-2025-21928, CVE-2025-21929, CVE-2025-21962, CVE-2025-22020, CVE-2025-37890, CVE-2025-38052, CVE-2025-38087, RHSA-2025:13962, CVE-2024-28956, CVE-2025-21867, CVE-2025-38084, CVE-2025-38085, CVE-2025-38124, CVE-2025-38159, CVE-2025-38250, CVE-2025-38380, CVE-2025-38471, RHSA-2025:14420, CVE-2025-22058, CVE-2025-37914, CVE-2025-38417, RHSA-2025:15011, CVE-2025-37823, CVE-2025-38200, CVE-2025-38211, CVE-2025-38350, CVE-2025-38461, CVE-2025-38464, CVE-2025-38500, CVE-2025-38684, RHSA-2025:15429, CVE-2025-37803, CVE-2025-38392, CVE-2025-39825, RHSA-2025:15661, CVE-2025-22097, CVE-2025-38332, CVE-2025-38352, CVE-2025-38449, RHSA-2025:7423, CVE-2024-58005, CVE-2024-58007, CVE-2024-58069, CVE-2025-21633, CVE-2025-21927, CVE-2025-21993, RHSA-2025:7903, CVE-2025-21756, CVE-2025-21966, CVE-2025-37749, RHSA-2025:8643, CVE-2025-21920, CVE-2025-21926, CVE-2025-21997, CVE-2025-22055, CVE-2025-37785, CVE-2025-37943, RHSA-2025:9080, CVE-2025-21961, CVE-2025-21963, CVE-2025-21969, CVE-2025-21979, CVE-2025-21999, CVE-2025-22126, CVE-2025-37750, RHSA-2025:14130, CVE-2025-5914, RHSA-2025:10699, CVE-2025-49794, CVE-2025-49796, CVE-2025-6021, RHSA-2025:12447, CVE-2025-7425, RHSA-2025:15099, CVE-2025-6020, CVE-2025-8941, RHSA-2025:9526, CVE-2025-6020, RHSA-2025:10136, CVE-2024-12718, CVE-2025-4138, CVE-2025-4330, CVE-2025-4435, CVE-2025-4517, RHSA-2025:11992, CVE-2025-6965, RHSA-2025:9978, CVE-2025-32462, CVE-2024-36350, CVE-2024-36357, RHSA-2025:12876, CVE-2022-29458, RHSA-2025:7440, CVE-2023-4752, CVE-2024-28956, CVE-2024-43420, CVE-2024-45332, CVE-2025-20012, CVE-2025-20623, CVE-2025-24495, RHSA-2025:7444, CVE-2024-8176, RHSA-2025:7409, CVE-2024-52005, RHSA-2025:11140, CVE-2024-52533, CVE-2025-4373, RHSA-2025:12748, CVE-2025-8058, RHSA-2025:8655, CVE-2025-4802, RHSA-2025:9877, CVE-2025-5702, RHSA-2025:7076, CVE-2024-12243, RHSA-2025:16116, CVE-2025-32988, CVE-2025-32989, CVE-2025-32990, CVE-2025-6395, RHSA-2025:6990, CVE-2024-45774, CVE-2024-45775, CVE-2024-45776, CVE-2024-45781, CVE-2024-45783, CVE-2025-0622, CVE-2025-0677, CVE-2025-0690, RHSA-2025:17558, CVE-2025-48964, RHSA-2025:9432, CVE-2025-47268, RHSA-2025:10585, CVE-2024-23337, CVE-2025-48060, RHSA-2025:10837, CVE-2025-21991, RHSA-2025:11861, CVE-2024-57980, CVE-2025-21905, CVE-2025-22085, CVE-2025-22091, CVE-2025-22113, CVE-2025-22121, CVE-2025-37797, CVE-2025-37958, CVE-2025-38086, CVE-2025-38110, RHSA-2025:13602, CVE-2025-38079, CVE-2025-38292, RHSA-2025:15740, CVE-2025-38550, RHSA-2025:16398, CVE-2023-53125, CVE-2025-37810, CVE-2025-38498, CVE-2025-39694, RHSA-2025:16880, CVE-2025-38472, CVE-2025-38527, CVE-2025-38718, CVE-2025-39682, CVE-2025-39698, RHSA-2025:17377, CVE-2024-50301, CVE-2025-38351, CVE-2025-39761, RHSA-2025:17760, CVE-2023-53373, CVE-2025-38556, CVE-2025-38614, CVE-2025-39757, RHSA-2025:6966, CVE-2022-48969, CVE-2022-48989, CVE-2022-49006, CVE-2022-49014, CVE-2022-49029, CVE-2022-49778, CVE-2022-49804, CVE-2022-49815, CVE-2022-50112, CVE-2022-50159, CVE-2022-50214, CVE-2022-50511, CVE-2023-52672, CVE-2023-52917, CVE-2023-53066, CVE-2023-53117, CVE-2023-53196, CVE-2023-53260, CVE-2023-53261, CVE-2023-53595, CVE-2024-27008, CVE-2024-27398, CVE-2024-35891, CVE-2024-35933, CVE-2024-35934, CVE-2024-35963, CVE-2024-35964, CVE-2024-35965, CVE-2024-35966, CVE-2024-35967, CVE-2024-35978, CVE-2024-36011, CVE-2024-36012, CVE-2024-36013, CVE-2024-36880, CVE-2024-36968, CVE-2024-38541, CVE-2024-39500, CVE-2024-40956, CVE-2024-41010, CVE-2024-41062, CVE-2024-42094, CVE-2024-42133, CVE-2024-42253, CVE-2024-42265, CVE-2024-42278, CVE-2024-42291, CVE-2024-42294, CVE-2024-42302, CVE-2024-42304, CVE-2024-42305, CVE-2024-42312, CVE-2024-42315, CVE-2024-42316, CVE-2024-42321, CVE-2024-43820, CVE-2024-43821, CVE-2024-43823, CVE-2024-43828, CVE-2024-43834, CVE-2024-43846, CVE-2024-43853, CVE-2024-43871, CVE-2024-43873, CVE-2024-43882, CVE-2024-43884, CVE-2024-43889, CVE-2024-43898, CVE-2024-43910, CVE-2024-43914, CVE-2024-44931, CVE-2024-44932, CVE-2024-44934, CVE-2024-44952, CVE-2024-44958, CVE-2024-44964, CVE-2024-44975, CVE-2024-44987, CVE-2024-44989, CVE-2024-45000, CVE-2024-45009, CVE-2024-45010, CVE-2024-45016, CVE-2024-45022, CVE-2024-46673, CVE-2024-46675, CVE-2024-46711, CVE-2024-46722, CVE-2024-46723, CVE-2024-46724, CVE-2024-46725, CVE-2024-46743, CVE-2024-46745, CVE-2024-46747, CVE-2024-46750, CVE-2024-46754, CVE-2024-46756, CVE-2024-46758, CVE-2024-46759, CVE-2024-46761, CVE-2024-46783, CVE-2024-46786, CVE-2024-46787, CVE-2024-46800, CVE-2024-46805, CVE-2024-46806, CVE-2024-46807, CVE-2024-46819, CVE-2024-46820, CVE-2024-46822, CVE-2024-46828, CVE-2024-46835, CVE-2024-46839, CVE-2024-46853, CVE-2024-46864, CVE-2024-46871, CVE-2024-47141, CVE-2024-47660, CVE-2024-47668, CVE-2024-47678, CVE-2024-47685, CVE-2024-47687, CVE-2024-47692, CVE-2024-47700, CVE-2024-47703, CVE-2024-47705, CVE-2024-47706, CVE-2024-47710, CVE-2024-47713, CVE-2024-47715, CVE-2024-47718, CVE-2024-47719, CVE-2024-47737, CVE-2024-47738, CVE-2024-47739, CVE-2024-47745, CVE-2024-47748, CVE-2024-48873, CVE-2024-49569, CVE-2024-49851, CVE-2024-49856, CVE-2024-49860, CVE-2024-49862, CVE-2024-49870, CVE-2024-49875, CVE-2024-49878, CVE-2024-49881, CVE-2024-49882, CVE-2024-49883, CVE-2024-49884, CVE-2024-49885, CVE-2024-49886, CVE-2024-49889, CVE-2024-49904, CVE-2024-49927, CVE-2024-49928, CVE-2024-49929, CVE-2024-49930, CVE-2024-49933, CVE-2024-49934, CVE-2024-49935, CVE-2024-49937, CVE-2024-49938, CVE-2024-49939, CVE-2024-49946, CVE-2024-49948, CVE-2024-49950, CVE-2024-49951, CVE-2024-49954, CVE-2024-49959, CVE-2024-49960, CVE-2024-49962, CVE-2024-49967, CVE-2024-49968, CVE-2024-49971, CVE-2024-49973, CVE-2024-49974, CVE-2024-49975, CVE-2024-49977, CVE-2024-49983, CVE-2024-49991, CVE-2024-49993, CVE-2024-49994, CVE-2024-49995, CVE-2024-49999, CVE-2024-50002, CVE-2024-50006, CVE-2024-50008, CVE-2024-50009, CVE-2024-50013, CVE-2024-50014, CVE-2024-50015, CVE-2024-50018, CVE-2024-50019, CVE-2024-50022, CVE-2024-50023, CVE-2024-50024, CVE-2024-50027, CVE-2024-50028, CVE-2024-50029, CVE-2024-50033, CVE-2024-50035, CVE-2024-50038, CVE-2024-50039, CVE-2024-50044, CVE-2024-50046, CVE-2024-50047, CVE-2024-50055, CVE-2024-50057, CVE-2024-50058, CVE-2024-50064, CVE-2024-50067, CVE-2024-50073, CVE-2024-50074, CVE-2024-50075, CVE-2024-50077, CVE-2024-50078, CVE-2024-50081, CVE-2024-50082, CVE-2024-50093, CVE-2024-50101, CVE-2024-50102, CVE-2024-50106, CVE-2024-50107, CVE-2024-50109, CVE-2024-50117, CVE-2024-50120, CVE-2024-50121, CVE-2024-50126, CVE-2024-50127, CVE-2024-50128, CVE-2024-50130, CVE-2024-50141, CVE-2024-50143, CVE-2024-50150, CVE-2024-50151, CVE-2024-50152, CVE-2024-50153, CVE-2024-50162, CVE-2024-50163, CVE-2024-50169, CVE-2024-50182, CVE-2024-50186, CVE-2024-50189, CVE-2024-50191, CVE-2024-50197, CVE-2024-50199, CVE-2024-50200, CVE-2024-50201, CVE-2024-50215, CVE-2024-50216, CVE-2024-50219, CVE-2024-50228, CVE-2024-50235, CVE-2024-50236, CVE-2024-50237, CVE-2024-50256, CVE-2024-50261, CVE-2024-50271, CVE-2024-50272, CVE-2024-50278, CVE-2024-50282, CVE-2024-50299, CVE-2024-50304, CVE-2024-53042, CVE-2024-53044, CVE-2024-53047, CVE-2024-53050, CVE-2024-53051, CVE-2024-53055, CVE-2024-53057, CVE-2024-53059, CVE-2024-53060, CVE-2024-53070, CVE-2024-53072, CVE-2024-53074, CVE-2024-53082, CVE-2024-53085, CVE-2024-53091, CVE-2024-53093, CVE-2024-53095, CVE-2024-53096, CVE-2024-53097, CVE-2024-53103, CVE-2024-53105, CVE-2024-53110, CVE-2024-53117, CVE-2024-53118, CVE-2024-53120, CVE-2024-53121, CVE-2024-53123, CVE-2024-53124, CVE-2024-53134, CVE-2024-53136, CVE-2024-53141, CVE-2024-53142, CVE-2024-53146, CVE-2024-53152, CVE-2024-53156, CVE-2024-53160, CVE-2024-53161, CVE-2024-53164, CVE-2024-53166, CVE-2024-53173, CVE-2024-53174, CVE-2024-53176, CVE-2024-53190, CVE-2024-53194, CVE-2024-53203, CVE-2024-53208, CVE-2024-53213, CVE-2024-53222, CVE-2024-53224, CVE-2024-53232, CVE-2024-53237, CVE-2024-53681, CVE-2024-54460, CVE-2024-54680, CVE-2024-56535, CVE-2024-56544, CVE-2024-56551, CVE-2024-56558, CVE-2024-56562, CVE-2024-56566, CVE-2024-56570, CVE-2024-56590, CVE-2024-56591, CVE-2024-56600, CVE-2024-56601, CVE-2024-56602, CVE-2024-56604, CVE-2024-56605, CVE-2024-56611, CVE-2024-56614, CVE-2024-56616, CVE-2024-56623, CVE-2024-56631, CVE-2024-56642, CVE-2024-56644, CVE-2024-56647, CVE-2024-56653, CVE-2024-56654, CVE-2024-56663, CVE-2024-56664, CVE-2024-56667, CVE-2024-56688, CVE-2024-56693, CVE-2024-56729, CVE-2024-56757, CVE-2024-56760, CVE-2024-56779, CVE-2024-56783, CVE-2024-57798, CVE-2024-57809, CVE-2024-57843, CVE-2024-57852, CVE-2024-57879, CVE-2024-57884, CVE-2024-57885, CVE-2024-57888, CVE-2024-57890, CVE-2024-57894, CVE-2024-57898, CVE-2024-57903, CVE-2024-57929, CVE-2024-57931, CVE-2024-57940, CVE-2024-58009, CVE-2024-58064, CVE-2024-58099, CVE-2025-1272, CVE-2025-21646, CVE-2025-21663, CVE-2025-21666, CVE-2025-21668, CVE-2025-21669, CVE-2025-21689, CVE-2025-21694, CVE-2025-22087, RHSA-2025:8142, CVE-2025-21964, RHSA-2025:8333, CVE-2022-3424, CVE-2025-21764, RHSA-2025:9302, CVE-2025-21883, CVE-2025-21919, CVE-2025-22104, CVE-2025-23150, CVE-2025-37738, RHSA-2025:9880, CVE-2023-52933, RHSA-2025:7067, CVE-2025-24528, RHSA-2025:9430, CVE-2025-3576, RHSA-2025:9431, CVE-2025-25724, RHSA-2025:18275, CVE-2025-5318, RHSA-2025:7077, CVE-2024-12133, RHSA-2025:13428, CVE-2025-32414, CVE-2025-32415, RHSA-2025:7043, CVE-2024-28047, CVE-2024-31157, CVE-2024-39279, RHSA-2025:6993, CVE-2025-26465, RHSA-2025:11804, CVE-2025-40909, RHSA-2025:15874, CVE-2023-49083, RHSA-2025:12519, CVE-2024-47081, RHSA-2025:7049, CVE-2024-35195, RHSA-2025:10407, CVE-2025-47273, RHSA-2025:15019, CVE-2025-8194, RHSA-2025:6977, CVE-2025-0938, RHSA-2025:7326, CVE-2024-45336, CVE-2025-22866, RHSA-2025:10353, CVE-2024-54661, RHSA-2025:17742, CVE-2025-53905, and CVE-2025-53906.
- Red Hat OpenShift and Red Hat CoreOS 4.19.16
- For more information, see the change logs.
- HAProxy c01cd5322cd5c284286c07fe9ad0cc0ef3ab5360
- Resolves the following CVEs: CVE-2025-32988, CVE-2025-6395, and CVE-2025-32990.
08 October 2025, Worker node fix pack 4.19.14_1549_openshift
The following list shows the components included in the worker node fix pack 4.19.14_1549_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
RHEL_9 5.14.0-503.40.1.el9_5 :
- Red Hat OpenShift and Red Hat CoreOS 4.19.14
- For more information, see the change logs.
HAProxy e0a48fcf355d98dc769ea048d2fd02044b11ed62 :
Master fix pack 4.19.13_1548_openshift, released 07 October 2025
The following list shows the changes that are in the master fix pack 4.19.13_1548_openshift. Master patch updates are applied automatically.
- Calico v3.29.5
- See the Calico release notes. etcd v3.5.23
- See the etcd release notes. IBM Cloud Controller Manager v1.32.9-2
- New version contains updates and security fixes. IBM Cloud File Storage for Classic for Classic plug-in and monitor 452
- New version contains updates and security fixes. Key Management Service provider v2.10.17
- New version contains updates and security fixes. Portieris admission controller v0.13.30
- See the Portieris admission controller release notes. Red Hat OpenShift on IBM Cloud. 4.19.13
- See the Red Hat OpenShift on IBM Cloud release notes. Tigera Operator v1.36.13
- See the Tigera Operator release notes.
23 September 2025, Worker node fix pack 4.19.12_1545_openshift
The following list shows the components included in the worker node fix pack 4.19.12_1545_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
RHEL_9 5.14.0-503.40.1.el9_5 :
- Red Hat OpenShift and Red Hat CoreOS 4.19.12
- For more information, see the change logs.
HAProxy e0a48fcf355d98dc769ea048d2fd02044b11ed62 :
15 September 2025, Worker node fix pack 4.19.10_1543_openshift
The following list shows the components included in the worker node fix pack 4.19.10_1543_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- RHEL_9 5.14.0-503.40.1.el9_5
- SELinux policy update for container runtime BPF execution to allow workloads like GPU Operators to run successfully
- Red Hat OpenShift and Red Hat CoreOS 4.19.10
- For more information, see the change logs.
HAProxy e0a48fcf355d98dc769ea048d2fd02044b11ed62 :
09 September 2025, Worker node fix pack 4.19.10_1542_openshift
The following list shows the components included in the worker node fix pack 4.19.10_1542_openshift. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
RHEL_9 5.14.0-503.40.1.el9_5 :
- Red Hat OpenShift and Red Hat CoreOS 4.19.10
- For more information, see the change logs.
- HAProxy e0a48fcf355d98dc769ea048d2fd02044b11ed62
- Resolves the following CVEs: CVE-2025-6020, and CVE-2025-8941.
Master fix pack 4.19.9_1541_openshift and worker node fix pack 4.19.9_1540_openshift, released 03 September 2025
The following list shows the components included in master fix pack 4.19.9_1541_openshift and worker node fix pack 4.19.9_1540_openshift. Master patch updates are applied automatically. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
- IBM Cloud Controller Manager v1.32.8-1
- New version contains updates and security fixes. Red Hat OpenShift (master) 4.19.9
- See the Red Hat OpenShift on IBM Cloud release notes. Red Hat OpenShift (worker) 4.19.9
- See the Red Hat OpenShift on IBM Cloud release notes.