RHSA-2025:3371: Important: Red Hat OpenStack Platform 17.1 (openstack-ansible-core) security update
An ansible-core rebuild for OpenStack based on python 3.9.Security Fix(es): Jinja sandbox breakout through attr filter selecting format method (CVE-2025-27516)For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVEpage listed in the References section.
Other sources
Important: Red Hat OpenStack Platform 17.1 (openstack-ansible-core) security update
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:3371?
The severity of RHSA-2025:3371 is classified as important due to the potential for a sandbox breakout.
How do I fix RHSA-2025:3371?
To fix RHSA-2025:3371, update the openstack-ansible-core package to the latest version as specified in the advisory.
What are the affected components of RHSA-2025:3371?
RHSA-2025:3371 affects the openstack-ansible-core package version 2.14.2-4.7.el9 and other Red Hat OpenStack products.
What vulnerability is addressed in RHSA-2025:3371?
RHSA-2025:3371 addresses the CVE-2025-27516 vulnerability, which involves a Jinja sandbox breakout.
Is RHSA-2025:3371 a security advisory?
Yes, RHSA-2025:3371 is a security advisory issued by Red Hat regarding a critical vulnerability.