Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2024:8969 - Security Advisory
Issued:
2024-11-06
Updated:
2024-11-06

RHSA-2024:8969 - Security Advisory

  • Overview
  • Updated Images

Synopsis

Moderate: Red Hat Ansible Automation Platform Execution Environments Container Release Update

Type/Severity

Security Advisory: Moderate

Topic

An update is now available for Red Hat Ansible Automation Platform Execution Environments

Description

Red Hat Ansible Automation Platform provides an enterprise framework for building, deploying and managing IT automation at scale. IT Managers can provide top-down guidelines on how automation is applied to individual teams, while automation developers retain the freedom to write tasks that leverage existing knowledge without the overhead. Ansible Automation Platform makes it possible for users across an organization to share, vet, and manage automation content by means of a simple, powerful, and agentless language.

Security Fix(es):

  • ansible-core: Exposure of Sensitive Information in Ansible Vault Files Due to Improper Logging (CVE-2024-8775)
  • ansible-core: Ansible-core user may read/write unauthorized content (CVE-2024-9902)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Updates and fixes:

  • ansible-core has been updated to 2.16.13 (ee-minimal 2.16 stream)
  • ansible-core has been updated to 2.17.6 (ee-minimal 2.17 stream)
  • ansible-core 2.18.0 has been added (ee-minimal 2.18 stream)

Solution

Red Hat Ansible Automation Platform Execution Environments

Affected Products

  • Red Hat Ansible Automation Platform Text-Only Advisories for RHEL 8 x86_64

Fixes

  • BZ - 2312119 - CVE-2024-8775 ansible-core: Exposure of Sensitive Information in Ansible Vault Files Due to Improper Logging
  • BZ - 2318271 - CVE-2024-9902 ansible-core: Ansible-core user may read/write unauthorized content

CVEs

  • CVE-2024-3596
  • CVE-2024-5535
  • CVE-2024-6119
  • CVE-2024-6232
  • CVE-2024-7143
  • CVE-2024-8775
  • CVE-2024-9902
  • CVE-2024-24788
  • CVE-2024-24790
  • CVE-2024-34397
  • CVE-2024-37891
  • CVE-2024-45490
  • CVE-2024-45491
  • CVE-2024-45492

References

  • https://access.redhat.com/security/updates/classification/#moderate

aarch64

ansible-automation-platform/ansible-builder-rhel8@sha256:ef45f6c736ac6f3eda6f81754fb023d6f17cac5925396130c7b12c90ff2df473
ansible-automation-platform/ansible-builder-rhel9@sha256:a7d2eb9f8caf873816f624e5aa4bb32e559659210a23ca2ba2795d9d1f1d593f
ansible-automation-platform/ee-minimal-rhel8@sha256:e6c3b8e68a55e7b1cb0a0a3a737bb1294f60339d24573db80de84e6a37ef9cb6
ansible-automation-platform/ee-minimal-rhel8@sha256:93cb5f7a7776004fef4950515cf6682a88877f984202bfabfbef995440ba40ad
ansible-automation-platform/ee-minimal-rhel8@sha256:84ca336d97b203e226777a99f1b785d7ce75e385e0be9fef376985f545ba01e5
ansible-automation-platform/ee-minimal-rhel8@sha256:787ac9e8e7bbd228cbd52fc4d20d08330df2285c172e1f9bc2537b85c36f47a4
ansible-automation-platform/ee-minimal-rhel9@sha256:b2038e21b2562d9934f4cb921006e5513540d8191440d0c6805184ef9e2f6d9b
ansible-automation-platform/ee-minimal-rhel9@sha256:1e2d3680406acf250ca3de730aaf241616a5e16d1d5dd966b025f49821751152
ansible-automation-platform/ee-minimal-rhel9@sha256:1862653f412631477d63da4574378727b895b5111e102bca4c6b1104e171e195
ansible-automation-platform/ee-minimal-rhel9@sha256:a7d0bd784751f1de4efe16c7941fcd8ac8592607308ec1d4635f3bfaf56a7a2a

ppc64le

ansible-automation-platform/ansible-builder-rhel8@sha256:7ab9a0db46fd4101508523f4883ce44db218646b4fbc0440672414e952f26c63
ansible-automation-platform/ansible-builder-rhel9@sha256:c99c4eee73b2ced948760e625d5b9d275ad363c138f8d182c1f028c284edb1c2
ansible-automation-platform/ee-minimal-rhel8@sha256:a4bc4c2aa73968cd688a04b1b57f4a58dc5789b3ff76fb40a3db760ce97bb0a6
ansible-automation-platform/ee-minimal-rhel8@sha256:a0171e315be9d4112cecc893283b24bd728a21414ec23551d84fdc55b4043dab
ansible-automation-platform/ee-minimal-rhel8@sha256:367ce9cd1d1b4939eafc66fed161ba44873a877c61d3177a558c35f61802c229
ansible-automation-platform/ee-minimal-rhel8@sha256:adf3cd868bb21a3982e6d5da39236235cf92883b24879556ff2232f81bfa6f91
ansible-automation-platform/ee-minimal-rhel9@sha256:d6e74b50b77f523a076ee5d53780eb036229ef22a9a4a7ef71baa1892ba24429
ansible-automation-platform/ee-minimal-rhel9@sha256:1e17a978ff579e2cd79027c323fc99a39f01d2e967922ee728cd14f58af0eee9
ansible-automation-platform/ee-minimal-rhel9@sha256:6e400faae356cfff8ed9880aae004ba4d1bbe1ade80f31a4a03d1c23870b2462
ansible-automation-platform/ee-minimal-rhel9@sha256:4cfb108508ccfc7e556bb3f21378244d2a1e0609f9133f502f7ae0beea23f9c7

s390x

ansible-automation-platform/ansible-builder-rhel8@sha256:fd6a709ebfcafa6bc6510e27818dd4a1055c072a890fbc30a18f1edf1a408dd9
ansible-automation-platform/ansible-builder-rhel9@sha256:d033e4505ac2f36c3f360e72a76b8488749feb959b678e6aef712b589c552200
ansible-automation-platform/ee-minimal-rhel8@sha256:255c76bbdbe20f1c48e4f432ec32027cef383dc40f6ba0baac911777db37d163
ansible-automation-platform/ee-minimal-rhel8@sha256:38b9a053a22e0d7479108b51395dd36671f745c88549e13584505a7ac62155f6
ansible-automation-platform/ee-minimal-rhel8@sha256:e8bd472d19f44dfcc0524a4725d7378a4ab9ef8b07cf6478927b3bfe8d2b43a2
ansible-automation-platform/ee-minimal-rhel8@sha256:70e28f489f8b4e276fd5ba757ef7c9efad4a19e73ffc2f7026e31eb90e709e18
ansible-automation-platform/ee-minimal-rhel9@sha256:30602eb0dd0d7f9e4ae9178d794372fd8ad25eb74aaaf3319279dc50b8db835d
ansible-automation-platform/ee-minimal-rhel9@sha256:a939caaffbfbaee376119db7f0d76d6e25d079170b28756162f729b0ab7ed8e7
ansible-automation-platform/ee-minimal-rhel9@sha256:3e8c5ea914d95f0bfabe1c65844820a18961d2e9367dcee6a379cfd5997ecd79
ansible-automation-platform/ee-minimal-rhel9@sha256:8aa45845045f7dbebd588594030402506a3f425d078ecd7d22f3e3c8348f840b

x86_64

ansible-automation-platform/ansible-builder-rhel8@sha256:39d7571e339d054be040ce31a36e4f092113cc19e9b3fe8682253a0fceb9b87d
ansible-automation-platform/ansible-builder-rhel8@sha256:2901c7889c6bac6b18716de9d5a791f1100ef6d413b4243c3bd92b7ff7c22ab9
ansible-automation-platform/ansible-builder-rhel9@sha256:be870a0d19d3fbc5990f071ec29f890a2e5397ddc8ede09f43b17edde945c496
ansible-automation-platform/ee-29-rhel8@sha256:173b451020601af0feeb8ae9cd179f26dd1c739c65f2eb0ed98221e450956300
ansible-automation-platform/ee-minimal-rhel8@sha256:f3ca48307c3a0ce65364d65f088d43a778856778c09eed01b0190067271d5a35
ansible-automation-platform/ee-minimal-rhel8@sha256:b87cd26f01171a9cfd43efa025619b5dc5080a5e596668142637064380d07e70
ansible-automation-platform/ee-minimal-rhel8@sha256:e74f12f655a6644877ce56fb6b1dacbb0b689c0c13306699a66f53b075453581
ansible-automation-platform/ee-minimal-rhel8@sha256:5e921bb706ca6704425351748ba786a86b67112a3aee2528e42dedefb0c1bc29
ansible-automation-platform/ee-minimal-rhel8@sha256:9ed8205b228fe1f83da12dd47475363d314fba58a4919a3c8f24ad0bfa105899
ansible-automation-platform/ee-minimal-rhel8@sha256:d6c2029c24be99607aed86cf8f8ba5cd51b2a7527a6d3f486f20c570a4e6000d
ansible-automation-platform/ee-minimal-rhel8@sha256:19fd510263db0b13d2693be89eb9d05f52376936adab010f4e57321dd989a45f
ansible-automation-platform/ee-minimal-rhel9@sha256:e704e514e7c9db074257d50cb82d4785959728a3042f26c92fcd7a54efbff2f1
ansible-automation-platform/ee-minimal-rhel9@sha256:444df4253a5e174860a5f3d8b833ca775416af12f1df3ac3b95dfdcadf9ce92d
ansible-automation-platform/ee-minimal-rhel9@sha256:30dfecdbab2131a050553b1c54a5f45a912a76db99efbfbbc02ac608b51255bb
ansible-automation-platform/ee-minimal-rhel9@sha256:9dcec82d8fa5a4069f8532231f7a52d6b2b3e410bf6ef79648338b4370b2931b

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility