RHSA-2026:73135HighCVSS 7.5
Red Hat Security Advisory: Red Hat Ansible Automation Platform Execution Environments Update
🔗 CVE IDs covered (1)
📋 Description
CVE-2025-66418 — urllib3: urllib3: Unbounded decompression chain leads to resource exhaustion
🎯 Affected products5
- Red Hat Ansible Automation Platform 2.18
- registry.redhat.io/ansible-automation-platform/ee-minimal-rhel8@sha256:2411951fcea745a08e40e29e85ab236961ddbf785941d157d307d1bc32801b00_s390x as a component of Red Hat Ansible Automation Platform 2.18
- registry.redhat.io/ansible-automation-platform/ee-minimal-rhel8@sha256:46c24edb3f9f7af66cfd748f53b561672b0e82b8add3c11e0d868338bc75b3da_arm64 as a component of Red Hat Ansible Automation Platform 2.18
- registry.redhat.io/ansible-automation-platform/ee-minimal-rhel8@sha256:a44c41e3ea316ef99719d2b80e4daf0901158b49e58b6c47e41d4e3f8e359a04_ppc64le as a component of Red Hat Ansible Automation Platform 2.18
- registry.redhat.io/ansible-automation-platform/ee-minimal-rhel8@sha256:dbf9d0fd58d25101e659666417bcb27dcd1dcd2af83df34f0d3af952e3227ff6_amd64 as a component of Red Hat Ansible Automation Platform 2.18
✅ Remediation
Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://docs.redhat.com/en/documentation/red_hat_ansible_automation_platform/latest/html/creating_and_using_execution_environments/index Workaround: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.