Red Hat Security Advisory: Red Hat Ansible Automation Platform Execution Environments Update
🔗 CVE IDs covered (3)
📋 Description
CVE-2025-69227 — aiohttp: aiohttp: Denial of Service via specially crafted POST request CVE-2025-69228 — aiohttp: aiohttp: Denial of Service via memory exhaustion from crafted POST request CVE-2026-69244 — aiohttp: AIOHTTP: Denial of Service via malformed HTTP responses
🎯 Affected products5
- Red Hat Ansible Automation Platform 2.18
- registry.redhat.io/ansible-automation-platform/ee-minimal-rhel9@sha256:165f4602e62d743aa70ed5c9482c53da59140536a6341a0e8c53e8b855d7ae27_s390x as a component of Red Hat Ansible Automation Platform 2.18
- registry.redhat.io/ansible-automation-platform/ee-minimal-rhel9@sha256:19bdba5cdba220072e9e6409815e1bb09d5a4597a5b4c4910c1266b2a52aeb6a_amd64 as a component of Red Hat Ansible Automation Platform 2.18
- registry.redhat.io/ansible-automation-platform/ee-minimal-rhel9@sha256:9ba5a103a0210085d793538e77dbf84a93700c70e909d4e15803500334470dd4_ppc64le as a component of Red Hat Ansible Automation Platform 2.18
- registry.redhat.io/ansible-automation-platform/ee-minimal-rhel9@sha256:ad752be8ba0ff4e576373a178aafce98974aa7af3d7f025219e298e8860cb3e8_arm64 as a component of Red Hat Ansible Automation Platform 2.18
✅ Remediation
Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://docs.redhat.com/en/documentation/red_hat_ansible_automation_platform/latest/html/creating_and_using_execution_environments/index Workaround: No mitigation is currently available that meets Red Hat Product Security’s standards for usability, deployment, applicability, or stability. Workaround: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
🔗 References (6)
- selfhttps://access.redhat.com/errata/RHSA-2026:55852
- externalhttps://access.redhat.com/security/cve/CVE-2025-69227
- externalhttps://access.redhat.com/security/cve/CVE-2025-69228
- externalhttps://access.redhat.com/security/cve/CVE-2026-69244
- externalhttps://access.redhat.com/security/updates/classification/
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_55852.json