First published: Tue Apr 06 2021(Updated: )
Red Hat Ansible Automation Platform Resource Operator container images <br>with security fixes.<br>Ansible Automation Platform manages Ansible Platform jobs and workflows<br>that can interface with any infrastructure on a Red Hat OpenShift Container<br>Platform cluster, or on a traditional infrastructure that is running<br>off-cluster.<br>Security fixes:<br>CVE-2021-20191 ansible: multiple modules expose secured values [ansible_automation_platform-1.2] (BZ#1916813)<br>CVE-2021-20178 ansible: user data leak in snmp_facts module [ansible_automation_platform-1.2] (BZ#1914774)<br>CVE-2021-20180 ansible: ansible module: bitbucket_pipeline_variable exposes secured values [ansible_automation_platform-1.2] (BZ#1915808)<br>CVE-2021-20228 ansible: basic.py no_log with fallback option [ansible_automation_platform-1.2] (BZ#1925002)<br>CVE-2021-3447 ansible: multiple modules expose secured values [ansible_automation_platform-1.2] (BZ#1939349)<br>For more details about the security issue, including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE<br>page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Ansible Automation Platform Operator | ||
Ansible Automation Platform |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2021:1079 is categorized as important.
RHSA-2021:1079 addresses security fixes for the Red Hat Ansible Automation Platform Resource Operator container images.
To fix RHSA-2021:1079, you should update the affected Red Hat Ansible Automation Platform Resource Operator container images to the latest version.
Users and administrators of the Red Hat Ansible Automation Platform running on the OpenShift Container Platform are affected by RHSA-2021:1079.
RHSA-2021:1079 was released on March 9, 2021.