Bug 1933672 - Ansible security advisory RHSA-2021:0663 not included in RHV
Summary: Ansible security advisory RHSA-2021:0663 not included in RHV
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat Enterprise Virtualization Manager
Classification: Red Hat
Component: ansible
Version: 4.4.4
Hardware: x86_64
OS: Unspecified
medium
medium
Target Milestone: ovirt-4.4.6
: 4.4.6
Assignee: Martin Perina
QA Contact: Pavol Brilla
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2021-03-01 11:55 UTC by Juan Orti
Modified: 2024-10-01 17:34 UTC (History)
7 users (show)

Fixed In Version: ovirt-hosted-engine-setup-2.5.0-2.el8ev, ovirt-engine-4.4.6.5
Doc Type: Release Note
Doc Text:
Red Hat Virtualization 4.4.6 now requires Ansible 2.9.18
Clone Of:
Environment:
Last Closed: 2021-06-01 13:23:43 UTC
oVirt Team: Infra
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2021:2180 0 None None None 2021-06-01 13:24:08 UTC
oVirt gerrit 114321 0 master MERGED packaging: Bump required ansible to 2.9.18 in RHV 2021-04-19 05:44:29 UTC

Description Juan Orti 2021-03-01 11:55:37 UTC
Description of problem:
The security advisory for Ansible RHSA-2021:0663 has been resolved in ansible-2.9.18-1, but this fix is not included in RHV which requires version 2.9.15.

Version-Release number of selected component (if applicable):
ansible-2.9.15-1.el8ae.noarch

How reproducible:
Always

Steps to Reproduce:
1. Fully update RHV Manager 4.4 or RHVH host 4.4

Actual results:
Vulnerability RHSA-2021:0663 exists.

Expected results:
Ansible security advisories included in RHV.

Additional info:

Comment 11 errata-xmlrpc 2021-06-01 13:23:43 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Moderate: RHV Engine and Host Common Packages security update [ovirt-4.4.6]), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2021:2180

Comment 12 meital avital 2022-08-14 13:48:28 UTC
Due to QE capacity, we are not going to cover this issue in our automation


Note You need to log in before you can comment on or make changes to this bug.