RHSA-2022:6969HighCVSS 7.3
Red Hat Security Advisory: Red Hat OpenStack Platform (tripleo-ansible) security update
🔗 CVE IDs covered (2)
📋 Description
CVE-2022-3101 — tripleo-ansible: /var/lib/mistral/overcloud discoverable CVE-2022-3146 — tripleo-ansible: /etc/openstack/clouds.yaml discoverable
🎯 Affected products22
- Red Hat OpenStack Platform 16.1
- Red Hat OpenStack Platform 16.2
- openstack-tripleo-common-0:11.4.1-1.20211201113404.el8ost.noarch as a component of Red Hat OpenStack Platform 16.1
- openstack-tripleo-common-0:11.4.1-1.20211201113404.el8ost.src as a component of Red Hat OpenStack Platform 16.1
- openstack-tripleo-common-0:11.7.1-2.20220318011206.el8ost.noarch as a component of Red Hat OpenStack Platform 16.2
- openstack-tripleo-common-0:11.7.1-2.20220318011206.el8ost.src as a component of Red Hat OpenStack Platform 16.2
- openstack-tripleo-common-container-base-0:11.4.1-1.20211201113404.el8ost.noarch as a component of Red Hat OpenStack Platform 16.1
- openstack-tripleo-common-container-base-0:11.7.1-2.20220318011206.el8ost.noarch as a component of Red Hat OpenStack Platform 16.2
- openstack-tripleo-common-containers-0:11.4.1-1.20211201113404.el8ost.noarch as a component of Red Hat OpenStack Platform 16.1
- openstack-tripleo-common-containers-0:11.7.1-2.20220318011206.el8ost.noarch as a component of Red Hat OpenStack Platform 16.2
- openstack-tripleo-common-devtools-0:11.4.1-1.20211201113404.el8ost.noarch as a component of Red Hat OpenStack Platform 16.1
- openstack-tripleo-common-devtools-0:11.7.1-2.20220318011206.el8ost.noarch as a component of Red Hat OpenStack Platform 16.2
- openstack-tripleo-heat-templates-0:11.3.2-1.20220114223346.el8ost.noarch as a component of Red Hat OpenStack Platform 16.1
- openstack-tripleo-heat-templates-0:11.3.2-1.20220114223346.el8ost.src as a component of Red Hat OpenStack Platform 16.1
- openstack-tripleo-heat-templates-0:11.6.1-2.20220409014870.el8ost.noarch as a component of Red Hat OpenStack Platform 16.2
- openstack-tripleo-heat-templates-0:11.6.1-2.20220409014870.el8ost.src as a component of Red Hat OpenStack Platform 16.2
- python3-tripleo-common-0:11.4.1-1.20211201113404.el8ost.noarch as a component of Red Hat OpenStack Platform 16.1
- python3-tripleo-common-0:11.7.1-2.20220318011206.el8ost.noarch as a component of Red Hat OpenStack Platform 16.2
- tripleo-ansible-0:0.5.1-1.20220114163454.el8ost.noarch as a component of Red Hat OpenStack Platform 16.1
- tripleo-ansible-0:0.5.1-1.20220114163454.el8ost.src as a component of Red Hat OpenStack Platform 16.1
- tripleo-ansible-0:0.8.1-2.20220406160116.el8ost.noarch as a component of Red Hat OpenStack Platform 16.2
- tripleo-ansible-0:0.8.1-2.20220406160116.el8ost.src as a component of Red Hat OpenStack Platform 16.2
✅ Remediation
Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258
🔗 References (10)
- selfhttps://access.redhat.com/errata/RHSA-2022:6969
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2120660
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2123767
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2123870
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2124721
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2124732
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2130109
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2130598
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_6969.json