RHSA-2021:1079: Moderate: Red Hat Ansible Automation Platform Operator 1.2 security update
Red Hat Ansible Automation Platform Resource Operator container images with security fixes.Ansible Automation Platform manages Ansible Platform jobs and workflowsthat can interface with any infrastructure on a Red Hat OpenShift ContainerPlatform cluster, or on a traditional infrastructure that is runningoff-cluster.Security fixes:CVE-2021-20191 ansible: multiple modules expose secured values [ansibleautomationplatform-1.2] (BZ#1916813)CVE-2021-20178 ansible: user data leak in snmpfacts module [ansibleautomationplatform-1.2] (BZ#1914774)CVE-2021-20180 ansible: ansible module: bitbucketpipelinevariable exposes secured values [ansibleautomationplatform-1.2] (BZ#1915808)CVE-2021-20228 ansible: basic.py nolog with fallback option [ansibleautomationplatform-1.2] (BZ#1925002)CVE-2021-3447 ansible: multiple modules expose secured values [ansibleautomationplatform-1.2] (BZ#1939349)For more details about the security issue, including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVEpage(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:1079?
The severity of RHSA-2021:1079 is categorized as important.
What does RHSA-2021:1079 address?
RHSA-2021:1079 addresses security fixes for the Red Hat Ansible Automation Platform Resource Operator container images.
How do I fix RHSA-2021:1079?
To fix RHSA-2021:1079, you should update the affected Red Hat Ansible Automation Platform Resource Operator container images to the latest version.
Who is affected by RHSA-2021:1079?
Users and administrators of the Red Hat Ansible Automation Platform running on the OpenShift Container Platform are affected by RHSA-2021:1079.
When was RHSA-2021:1079 released?
RHSA-2021:1079 was released on March 9, 2021.