RHSA-2021:2180: Moderate: RHV Engine and Host Common Packages security update [ovirt-4.4.6]
The ovirt-engine package provides the Red Hat Virtualization Manager, a centralized management platform that allows system administrators to view and manage virtual machines. The Manager provides a comprehensive range of features including search capabilities, resource management, live migrations, and virtual infrastructure provisioning.<br>Security Fix(es):<br><li> ansible: user data leak in snmpfacts module (CVE-2021-20178)</li> <li> ansible module: bitbucketpipelinevariable exposes secured values (CVE-2021-20180)</li> <li> ansible: multiple modules expose secured values (CVE-2021-20191)</li> <li> ansible: basic.py nolog with fallback option (CVE-2021-20228)</li> For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.<br>Bug Fix(es):<br><li> Red Hat Virtualization 4.4.6 now requires Ansible 2.9.18 (BZ#1933672)</li>
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:2180?
The severity of RHSA-2021:2180 is classified as important.
How do I fix RHSA-2021:2180?
To fix RHSA-2021:2180, update the affected packages to the versions specified in the advisory.
Which packages are affected by RHSA-2021:2180?
The affected packages include ansible, ovirt-ansible-collection, python-ovirt-engine-sdk4, and rubygem-ovirt-engine-sdk4.
Is RHSA-2021:2180 related to Red Hat Virtualization Manager?
Yes, RHSA-2021:2180 addresses vulnerabilities associated with the ovirt-engine package used in Red Hat Virtualization Manager.
What platforms does RHSA-2021:2180 affect?
RHSA-2021:2180 affects systems running Red Hat Enterprise Linux 8.