Red Hat Security Advisory: Red Hat Ansible Automation Platform Execution Environments Update
🔗 CVE IDs covered (3)
📋 Description
CVE-2025-69227 — aiohttp: aiohttp: Denial of Service via specially crafted POST request CVE-2025-69228 — aiohttp: aiohttp: Denial of Service via memory exhaustion from crafted POST request CVE-2026-69244 — aiohttp: AIOHTTP: Denial of Service via malformed HTTP responses
🎯 Affected products5
- Red Hat Ansible Automation Platform 2.18
- registry.redhat.io/ansible-automation-platform/ee-minimal-rhel8@sha256:2ced0ee476b2eed49f54ccc5fdc405bfc4ee6a366b003bb57ba215f875e39886_amd64 as a component of Red Hat Ansible Automation Platform 2.18
- registry.redhat.io/ansible-automation-platform/ee-minimal-rhel8@sha256:621da516d858a9633438fc96cf235a9ae1f1ad815cac438b01d92611973376ff_s390x as a component of Red Hat Ansible Automation Platform 2.18
- registry.redhat.io/ansible-automation-platform/ee-minimal-rhel8@sha256:62e0c1b32b6384639bb1695cc1d7e282b9c73ef5da81680ae18e871b1af5dc67_ppc64le as a component of Red Hat Ansible Automation Platform 2.18
- registry.redhat.io/ansible-automation-platform/ee-minimal-rhel8@sha256:dd750042b8bf7887772520bbcef103f0c1d88ed4104b412c1ca982cdeb0dd631_arm64 as a component of Red Hat Ansible Automation Platform 2.18
✅ Remediation
Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://docs.redhat.com/en/documentation/red_hat_ansible_automation_platform/latest/html/creating_and_using_execution_environments/index Workaround: No mitigation is currently available that meets Red Hat Product Security’s standards for usability, deployment, applicability, or stability. Workaround: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
🔗 References (6)
- selfhttps://access.redhat.com/errata/RHSA-2026:55853
- externalhttps://access.redhat.com/security/cve/CVE-2025-69227
- externalhttps://access.redhat.com/security/cve/CVE-2025-69228
- externalhttps://access.redhat.com/security/cve/CVE-2026-69244
- externalhttps://access.redhat.com/security/updates/classification/
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_55853.json