RHSA-2024:11145MediumCVSS 5.5
Red Hat Security Advisory: Red Hat Ansible Automation Platform 2.5 Product Security and Bug Fix Update
🔗 CVE IDs covered (2)
📋 Description
CVE-2024-11079 — ansible-core: Unsafe Tagging Bypass via hostvars Object in Ansible-Core CVE-2024-11483 — automation-gateway: aap-gateway: Improper Scope Handling in OAuth2 Tokens for AAP 2.5
🔗 References (5)
- selfhttps://access.redhat.com/errata/RHSA-2024:11145
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2325171
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2327579
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_11145.json