The vendor explicitly identifies these products or versions as containing the fix.
- rhbk/keycloak-operator-bundle@sha256:67a4498b9c68a7068cc2bcfa2d7d5eb35e6ec7e281c0886893f4125a6487c8a1_amd64 as a component of Red Hat build of Keycloak 26.0
- rhbk/keycloak-rhel9-operator@sha256:83c90cf0627a1b99900d539f417e648d8be4c9966452872a93a8236e17b1d1cf_amd64 as a component of Red Hat build of Keycloak 26.0
- rhbk/keycloak-rhel9-operator@sha256:8e1a37dc9fa7b99a65ac9997d49bc9991172a461c63196614d1975bc2210e7fa_ppc64le as a component of Red Hat build of Keycloak 26.0
- rhbk/keycloak-rhel9-operator@sha256:acd2a3adf7365e62689b79608c2289c804f47f97a81f9e8ddf3fecdce6d6f0ec_s390x as a component of Red Hat build of Keycloak 26.0
- rhbk/keycloak-rhel9@sha256:67699f3ec6e1a489b769523d9deaeec57a8113259d375501aa043778828c2286_amd64 as a component of Red Hat build of Keycloak 26.0
- rhbk/keycloak-rhel9@sha256:76f2963c284d0a79e6026bee0837639bce5af84a18c994828aa0890923725189_s390x as a component of Red Hat build of Keycloak 26.0
- rhbk/keycloak-rhel9@sha256:87ff67880fd7f44174b263759c99f4d701cf208eeb6f4abf636a10b98ec023d0_ppc64le as a component of Red Hat build of Keycloak 26.0
- rhbk/keycloak-operator-bundle@sha256:4ecfe1e2059cc2d7087e01ae04598bd5628f2958c21e14e41fa249dccf0d3e5f_amd64 as a component of Red Hat build of Keycloak 26.2
- rhbk/keycloak-rhel9-operator@sha256:2a85cb76b1d5cd7cf2a8b0d809249470b049ae5b8de32186ceac4ae13e7758e3_ppc64le as a component of Red Hat build of Keycloak 26.2
- rhbk/keycloak-rhel9-operator@sha256:2cb97ec2a8ac79b31a678d348b2217e008d39b1f8482e75c1baf8acc026910c1_s390x as a component of Red Hat build of Keycloak 26.2
- rhbk/keycloak-rhel9-operator@sha256:35d37a09fa0a9799258aede346e1cb205179617ab2e417c809e18dee2ed1860a_amd64 as a component of Red Hat build of Keycloak 26.2
- rhbk/keycloak-rhel9-operator@sha256:c9d86fff34b796441318e5fd211b69f07b4aaacfd49f7d2b02d972329cb61d83_arm64 as a component of Red Hat build of Keycloak 26.2
- Summary
- A flaw was found in Keycloak. By setting a verification policy to 'ALL', the trust store certificate verification is skipped, which is unintended.
- Remediation
- Before applying the update, back up your existing installation, including all applications, configuration files, databases and database settings, and so on.
