Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
RHSA-2026:42079
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2026:42079
Import Source
https://security.access.redhat.com/data/osv/RHSA-2026:42079.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2026:42079
Upstream
CVE-2026-11332
CVE-2026-12701
CVE-2026-25681
CVE-2026-27136
CVE-2026-27145
CVE-2026-32281
CVE-2026-33811
CVE-2026-39821
CVE-2026-44432
CVE-2026-6321
CVE-2026-8643
Related
GO-2026-4946
GO-2026-4981
GO-2026-5026
GO-2026-5029
GO-2026-5030
GO-2026-5037
Published
2026-07-23T10:13:56Z
Modified
2026-07-24T10:32:22.221674592Z
Severity
9.0 (Critical)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:H/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: Red Hat Ansible Automation Platform 2.6 Product Security and Bug Fix Update
Details
References
https://access.redhat.com/errata/RHSA-2026:42079
https://access.redhat.com/security/updates/classification/#important
https://docs.redhat.com/en/documentation/red_hat_ansible_automation_platform/2.6/whats_new-async_updates
https://docs.redhat.com/en/documentation/red_hat_ansible_automation_platform/2.6#Upgrade
https://bugzilla.redhat.com/show_bug.cgi?id=2456333
https://bugzilla.redhat.com/show_bug.cgi?id=2460927
https://bugzilla.redhat.com/show_bug.cgi?id=2466582
https://bugzilla.redhat.com/show_bug.cgi?id=2467822
https://bugzilla.redhat.com/show_bug.cgi?id=2477154
https://bugzilla.redhat.com/show_bug.cgi?id=2480756
https://bugzilla.redhat.com/show_bug.cgi?id=2480757
https://bugzilla.redhat.com/show_bug.cgi?id=2480761
https://bugzilla.redhat.com/show_bug.cgi?id=2484207
https://bugzilla.redhat.com/show_bug.cgi?id=2485379
https://bugzilla.redhat.com/show_bug.cgi?id=2490703
https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_42079.json
https://access.redhat.com/security/cve/CVE-2026-6321
https://www.cve.org/CVERecord?id=CVE-2026-6321
https://nvd.nist.gov/vuln/detail/CVE-2026-6321
https://cna.openjsf.org/security-advisories.html
https://github.com/fastify/fast-uri/security/advisories/GHSA-q3j6-qgpj-74h6
https://access.redhat.com/security/cve/CVE-2026-8643
https://www.cve.org/CVERecord?id=CVE-2026-8643
https://nvd.nist.gov/vuln/detail/CVE-2026-8643
https://github.com/pypa/pip/commit/8eb178480bd1a2b223f509fc430796b265158dfb
https://access.redhat.com/security/cve/CVE-2026-11332
https://www.cve.org/CVERecord?id=CVE-2026-11332
https://nvd.nist.gov/vuln/detail/CVE-2026-11332
https://github.com/ansible/ansible
https://access.redhat.com/security/cve/CVE-2026-12701
https://www.cve.org/CVERecord?id=CVE-2026-12701
https://nvd.nist.gov/vuln/detail/CVE-2026-12701
https://access.redhat.com/security/cve/CVE-2026-25681
https://www.cve.org/CVERecord?id=CVE-2026-25681
https://nvd.nist.gov/vuln/detail/CVE-2026-25681
https://go.dev/cl/781703
https://go.dev/issue/79574
https://groups.google.com/g/golang-announce/c/iI-mYSI0lu8
https://pkg.go.dev/vuln/GO-2026-5029
https://access.redhat.com/security/cve/CVE-2026-27136
https://www.cve.org/CVERecord?id=CVE-2026-27136
https://nvd.nist.gov/vuln/detail/CVE-2026-27136
https://go.dev/cl/781685
https://go.dev/issue/79575
https://pkg.go.dev/vuln/GO-2026-5030
https://access.redhat.com/security/cve/CVE-2026-27145
https://www.cve.org/CVERecord?id=CVE-2026-27145
https://nvd.nist.gov/vuln/detail/CVE-2026-27145
https://go.dev/cl/783621
https://go.dev/issue/79694
https://groups.google.com/g/golang-announce/c/tKs3rmcBcKw
https://pkg.go.dev/vuln/GO-2026-5037
https://access.redhat.com/security/cve/CVE-2026-32281
https://www.cve.org/CVERecord?id=CVE-2026-32281
https://nvd.nist.gov/vuln/detail/CVE-2026-32281
https://go.dev/cl/758061
https://go.dev/issue/78281
https://groups.google.com/g/golang-announce/c/0uYbvbPZRWU
https://pkg.go.dev/vuln/GO-2026-4946
https://access.redhat.com/security/cve/CVE-2026-33811
https://www.cve.org/CVERecord?id=CVE-2026-33811
https://nvd.nist.gov/vuln/detail/CVE-2026-33811
https://go.dev/cl/767860
https://go.dev/issue/78803
https://groups.google.com/g/golang-announce/c/qcCIEXso47M
https://pkg.go.dev/vuln/GO-2026-4981
https://access.redhat.com/security/cve/CVE-2026-39821
https://www.cve.org/CVERecord?id=CVE-2026-39821
https://nvd.nist.gov/vuln/detail/CVE-2026-39821
https://go.dev/cl/767220
https://go.dev/issue/78760
https://pkg.go.dev/vuln/GO-2026-5026
https://access.redhat.com/security/cve/CVE-2026-44432
https://www.cve.org/CVERecord?id=CVE-2026-44432
https://nvd.nist.gov/vuln/detail/CVE-2026-44432
https://github.com/urllib3/urllib3/security/advisories/GHSA-mf9v-mfxr-j63j
Affected packages
Red Hat:ansible_automation_platform:2.6::el10
ansible-core
Package
Name
ansible-core
Purl
pkg:rpm/redhat/ansible-core
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:2.16.19-1.el10ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
receptor
Package
Name
receptor
Purl
pkg:rpm/redhat/receptor
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6.6-1.el10ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
Red Hat:ansible_automation_platform:2.6::el9
automation-platform-ui
Package
Name
automation-platform-ui
Purl
pkg:rpm/redhat/automation-platform-ui
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.11-1.el9ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
automation-controller-venv-tower
Package
Name
automation-controller-venv-tower
Purl
pkg:rpm/redhat/automation-controller-venv-tower
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:4.7.14-3.el9ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
ansible-core
Package
Name
ansible-core
Purl
pkg:rpm/redhat/ansible-core
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.16.19-1.el9ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
python3.12-pulpcore
Package
Name
python3.12-pulpcore
Purl
pkg:rpm/redhat/python3.12-pulpcore
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:3.49.63-2.el9ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
receptor
Package
Name
receptor
Purl
pkg:rpm/redhat/receptor
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6.6-1.el9ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
automation-gateway-proxy
Package
Name
automation-gateway-proxy
Purl
pkg:rpm/redhat/automation-gateway-proxy
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.17-1.el9ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
automation-gateway-proxy-debugsource
Package
Name
automation-gateway-proxy-debugsource
Purl
pkg:rpm/redhat/automation-gateway-proxy-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.17-1.el9ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
automation-gateway-proxy-server
Package
Name
automation-gateway-proxy-server
Purl
pkg:rpm/redhat/automation-gateway-proxy-server
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.17-1.el9ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
automation-gateway-proxy-server-debuginfo
Package
Name
automation-gateway-proxy-server-debuginfo
Purl
pkg:rpm/redhat/automation-gateway-proxy-server-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.17-1.el9ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
Red Hat:ansible_automation_platform_developer:2.6::el10
ansible-core
Package
Name
ansible-core
Purl
pkg:rpm/redhat/ansible-core
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:2.16.19-1.el10ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
Red Hat:ansible_automation_platform_developer:2.6::el9
ansible-core
Package
Name
ansible-core
Purl
pkg:rpm/redhat/ansible-core
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.16.19-1.el9ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
receptor
Package
Name
receptor
Purl
pkg:rpm/redhat/receptor
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6.6-1.el9ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
Red Hat:ansible_automation_platform_inside:2.6::el9
ansible-core
Package
Name
ansible-core
Purl
pkg:rpm/redhat/ansible-core
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.16.19-1.el9ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
receptor
Package
Name
receptor
Purl
pkg:rpm/redhat/receptor
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.6.6-1.el9ap
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42079.json"
RHSA-2026:42079 - OSV