RHSA-2024:1931: Important: Red Hat OpenStack Platform 17.1 (python-yaql and openstack-tripleo-heat-templates) security update
Heat templates for TripleOYAQL library has a out of the box large set of commonly used functions.Security Fix(es): OpenStack Murano Component Information Leakage (CVE-2024-29156) For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVEpage listed in the References section.
Other sources
Important: Red Hat OpenStack Platform 17.1 (python-yaql and openstack-tripleo-heat-templates) security update
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:1931?
The severity of RHSA-2024:1931 is classified as important.
What vulnerability does RHSA-2024:1931 address?
RHSA-2024:1931 addresses information leakage in the OpenStack Murano component, identified as CVE-2024-29156.
How do I fix RHSA-2024:1931?
To fix RHSA-2024:1931, update to the remedied versions of the affected packages including openstack-tripleo-heat-templates, python-yaql, and python3-yaql.
Which packages are affected by RHSA-2024:1931?
RHSA-2024:1931 affects the openstack-tripleo-heat-templates, python-yaql, and python3-yaql packages.
Is there a CVSS score associated with RHSA-2024:1931?
Yes, RHSA-2024:1931 includes a CVSS score indicating the impact of the vulnerability, but specific details are not provided.