AlmaLinux / AlmaLinux/updates

Release rhc-worker-playbook-0.1.10-1.el9_5 ALSA-2024:10761

Open
#945 1 comment 0 reactions 0 assignees View on GitHub
Dominant language
No language data
Stars
2
Forks
0
PR merge metrics
No merged PRs in 30d

Description

rhc-worker-playbook security update
Severity: important
Description
Python-based worker for AlmaLinux connect, used to launch Ansible playbooks via Ansible Runner.

Security Fix(es):

* python-wheel: remote attackers can cause denial of service via attacker controlled input to wheel cli (CVE-2022-40898)
* gRPC: sensitive information disclosure (CVE-2023-32731)
* gRPC: Reachable Assertion (CVE-2023-1428)
* gRPC: hpack table accounting errors can lead to denial of service (CVE-2023-33953)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Affected packages:
rhc-worker-playbook-0.1.10-1.el9_5.x86_64
rhc-worker-playbook-0.1.10-1.el9_5.s390x
rhc-worker-playbook-0.1.10-1.el9_5.ppc64le
rhc-worker-playbook-0.1.10-1.el9_5.aarch64

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.