8.4. Ansible Automation Platform 补丁发行版本 2026 年 1 月 28 日


此 Ansible Automation Platform 发行版本中实现了以下功能增强和程序错误修复。

Expand
发布日期组件版本

2026 年 1 月 28 日

  • 自动化控制器 4.5.30
  • Automation hub 4.9.5
  • event-Driven Ansible controller 1.0.8
  • Red Hat Ansible Lightspeed 2.4.20260121
  • Ansible Automation Platform-collection 安装程序(bundle): 2.4-14.2
  • Ansible Automation Platform-collection 安装程序(在线): 2.4-14
  • receptor 1.6.3

此 Ansible Automation Platform 发行版本中实现了以下功能增强和程序错误修复。

本发行版本中的 CSV 版本:

  • Namespace-scoped Bundle: aap-operator.v2.4.0-0.1768592178
  • Cluster-scoped Bundle: aap-operator.v2.4.0-0.1768599045

8.4.1. CVE

在这个版本中,解决了以下 CVE:

  • CVE-2025-66471 Automation-controller:urllib3 Streaming API 会错误地处理高度压缩的数据。(AAP-62007)
  • CVE-2025-66471 ansible-automation-platform-24/lightspeed-rhel8:urllib3 Streaming API 错误地处理高度压缩的数据。(AAP-62004)
  • CVE-2025-69223 automation-controller: AIOHTTP 的 HTTP Parser auto_decompress 功能容易受到 zip bomb. (AAP-61853)的影响。
  • CVE-2025-69223 ansible-automation-platform-24/controller-rhel8: AIOHTTP 的 HTTP Parser auto_decompress 功能容易受到 zip bomb. (AAP-61840)
  • CVE-2025-64460 automation-controller:Django: XML Deserializer 中的复杂性会导致拒绝服务。(AAP-60953)
  • CVE-2025-61729 receptor: 在 crypto/x509 中打印主机证书验证错误字符串时的资源消耗。
Red Hat logoGithubredditYoutubeTwitter

学习

尝试、购买和销售

社区

關於紅帽

我们提供强化的解决方案,使企业能够更轻松地跨平台和环境(从核心数据中心到网络边缘)工作。

让开源更具包容性

红帽致力于替换我们的代码、文档和 Web 属性中存在问题的语言。欲了解更多详情,请参阅红帽博客.

关于红帽文档

Legal Notice

Theme

© 2026 Red Hat
返回顶部