RHSA-2026:37283HighCVSS 8.0

Red Hat Security Advisory: RHTAS 1.4 - GA Release of Model Transparency 1.0.2

Published
July 9, 2026
Last Modified
August 2, 2026

🔗 CVE IDs covered (1)

📋 Description

CVE-2026-8643 — python-pip: Path traversal via malicious entry point name in pip wheel installation allows arbitrary file overwrite

🎯 Affected products3

  • Red Hat Trusted Artifact Signer 1.4
  • registry.redhat.io/rhtas/model-transparency-rhel9@sha256:a78afee49c7cc9fad5cf8837012c00fad772a221445c8f93271bd4b3547bfc0a_amd64 as a component of Red Hat Trusted Artifact Signer 1.4
  • registry.redhat.io/rhtas/model-transparency-rhel9@sha256:c065b874281bec054651059639753bebd2a65b0cac5ba496e662533824158833_arm64 as a component of Red Hat Trusted Artifact Signer 1.4

✅ Remediation

The Model Transparency CLI Image is a containerized command-line tool for signing and verifying AI/ML workloads against a private Red Hat Trusted Artifact Signer (RHTAS) instance. It lets teams create signatures and attestations for model artifacts and validate them at build or deploy time using enterprise trust material (e.g., Fulcio/Rekor). For details on using the Model Transparency CLI image, refer to the product documentation at https://access.redhat.com/documentation/en-us/red_hat_trusted_artifact_signer/1.4 You can find the release notes for this version of Red Hat Trusted Artifact Signer at https://access.redhat.com/documentation/en-us/red_hat_trusted_artifact_signer/1.4/html-single/release_notes/index Workaround: To mitigate this issue, users should avoid installing Python wheels from untrusted sources. It is strongly advised against using `pip install` with elevated privileges, such as `sudo`, when installing wheels. Additionally, administrators should inspect `entry_points.txt` within wheels for path separators or absolute paths before installation.

🔗 References (6)