First published: Mon Jun 24 2024(Updated: )
Affected components:<br><li> python-yaql: a library that contains a large set of commonly used functions</li> <li> openstack-tripleo-heat-templates: Heat templates for TripleO</li> <li> openstack-tripleo-common: Python library for code used by TripleO projects</li> Security Fix(es):<br><li> OpenStack Murano Component Information Leakage (CVE-2024-29156)</li> For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE<br>page listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/openstack-tripleo-common | <11.7.1-2.20230809225405.e189622.el8 | 11.7.1-2.20230809225405.e189622.el8 |
redhat/openstack-tripleo-heat-templates | <11.6.1-2.20230808225220.el8 | 11.6.1-2.20230808225220.el8 |
redhat/python-yaql | <1.1.3-9.el8 | 1.1.3-9.el8 |
redhat/openstack-tripleo-common-container-base | <11.7.1-2.20230809225405.e189622.el8 | 11.7.1-2.20230809225405.e189622.el8 |
redhat/openstack-tripleo-common-containers | <11.7.1-2.20230809225405.e189622.el8 | 11.7.1-2.20230809225405.e189622.el8 |
redhat/openstack-tripleo-common-devtools | <11.7.1-2.20230809225405.e189622.el8 | 11.7.1-2.20230809225405.e189622.el8 |
redhat/python3-tripleo-common | <11.7.1-2.20230809225405.e189622.el8 | 11.7.1-2.20230809225405.e189622.el8 |
redhat/python3-yaql | <1.1.3-9.el8 | 1.1.3-9.el8 |
Red Hat OpenStack | ||
Red Hat OpenStack Services on OpenShift |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2024:4053 is classified as important.
To fix RHSA-2024:4053, upgrade the affected packages to the specified remedied versions listed in the advisory.
RHSA-2024:4053 affects the python-yaql, openstack-tripleo-heat-templates, and openstack-tripleo-common components.
Install openstack-tripleo-common-11.7.1-2.20230809225405.e189622.el8, openstack-tripleo-heat-templates-11.6.1-2.20230808225220.el8, and python-yaql-1.1.3-9.el8 to resolve RHSA-2024:4053.
Organizations using Red Hat OpenStack products, particularly IBM Power variants, are impacted by RHSA-2024:4053.