Vulnerability Database
Blog
FAQ
Docs
RHSA-2025:9986
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2025:9986
Import Source
https://security.access.redhat.com/data/osv/RHSA-2025:9986.json
JSON Data
https://api.test.osv.dev/v1/vulns/RHSA-2025:9986
Related
GO-2025-3563
Published
2025-07-01T10:06:01Z
Modified
2025-07-01T16:46:45.192190Z
Upstream
CVE-2025-49521
CVE-2025-49520
CVE-2025-22871
Severity
8.8 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: Red Hat Ansible Automation Platform 2.5 Product Security and Bug Fix Update
Details
References
https://access.redhat.com/errata/RHSA-2025:9986
https://access.redhat.com/security/updates/classification/#important
https://bugzilla.redhat.com/show_bug.cgi?id=2358493
https://bugzilla.redhat.com/show_bug.cgi?id=2370812
https://bugzilla.redhat.com/show_bug.cgi?id=2370817
https://issues.redhat.com/browse/AAP-42288
https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_9986.json
https://access.redhat.com/security/cve/CVE-2025-22871
https://www.cve.org/CVERecord?id=CVE-2025-22871
https://nvd.nist.gov/vuln/detail/CVE-2025-22871
https://go.dev/cl/652998
https://go.dev/issue/71988
https://groups.google.com/g/golang-announce/c/Y2uBTVKjBQk
https://pkg.go.dev/vuln/GO-2025-3563
https://access.redhat.com/security/cve/CVE-2025-49520
https://www.cve.org/CVERecord?id=CVE-2025-49520
https://nvd.nist.gov/vuln/detail/CVE-2025-49520
https://access.redhat.com/security/cve/CVE-2025-49521
https://www.cve.org/CVERecord?id=CVE-2025-49521
https://nvd.nist.gov/vuln/detail/CVE-2025-49521
Affected packages
Red Hat:ansible_automation_platform_developer:2.5::el8
/
receptor
Package
Name
receptor
Purl
pkg:rpm/redhat/receptor
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el8ap
Red Hat:ansible_automation_platform_developer:2.5::el8
/
receptor-debuginfo
Package
Name
receptor-debuginfo
Purl
pkg:rpm/redhat/receptor-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el8ap
Red Hat:ansible_automation_platform_developer:2.5::el8
/
receptor-debugsource
Package
Name
receptor-debugsource
Purl
pkg:rpm/redhat/receptor-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el8ap
Red Hat:ansible_automation_platform_developer:2.5::el8
/
receptorctl
Package
Name
receptorctl
Purl
pkg:rpm/redhat/receptorctl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el8ap
Red Hat:ansible_automation_platform_inside:2.5::el8
/
receptor
Package
Name
receptor
Purl
pkg:rpm/redhat/receptor
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el8ap
Red Hat:ansible_automation_platform_inside:2.5::el8
/
receptor-debuginfo
Package
Name
receptor-debuginfo
Purl
pkg:rpm/redhat/receptor-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el8ap
Red Hat:ansible_automation_platform_inside:2.5::el8
/
receptor-debugsource
Package
Name
receptor-debugsource
Purl
pkg:rpm/redhat/receptor-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el8ap
Red Hat:ansible_automation_platform_inside:2.5::el8
/
receptorctl
Package
Name
receptorctl
Purl
pkg:rpm/redhat/receptorctl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el8ap
Red Hat:ansible_automation_platform:2.5::el8
/
automation-gateway-proxy
Package
Name
automation-gateway-proxy
Purl
pkg:rpm/redhat/automation-gateway-proxy
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.5.10-2.el8ap
Red Hat:ansible_automation_platform:2.5::el8
/
automation-gateway-proxy-debugsource
Package
Name
automation-gateway-proxy-debugsource
Purl
pkg:rpm/redhat/automation-gateway-proxy-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.5.10-2.el8ap
Red Hat:ansible_automation_platform:2.5::el8
/
automation-gateway-proxy-server
Package
Name
automation-gateway-proxy-server
Purl
pkg:rpm/redhat/automation-gateway-proxy-server
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.5.10-2.el8ap
Red Hat:ansible_automation_platform:2.5::el8
/
automation-gateway-proxy-server-debuginfo
Package
Name
automation-gateway-proxy-server-debuginfo
Purl
pkg:rpm/redhat/automation-gateway-proxy-server-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.5.10-2.el8ap
Red Hat:ansible_automation_platform:2.5::el8
/
receptor
Package
Name
receptor
Purl
pkg:rpm/redhat/receptor
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el8ap
Red Hat:ansible_automation_platform:2.5::el8
/
receptor-debuginfo
Package
Name
receptor-debuginfo
Purl
pkg:rpm/redhat/receptor-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el8ap
Red Hat:ansible_automation_platform:2.5::el8
/
receptor-debugsource
Package
Name
receptor-debugsource
Purl
pkg:rpm/redhat/receptor-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el8ap
Red Hat:ansible_automation_platform:2.5::el8
/
receptorctl
Package
Name
receptorctl
Purl
pkg:rpm/redhat/receptorctl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el8ap
Red Hat:ansible_automation_platform_developer:2.5::el9
/
receptor
Package
Name
receptor
Purl
pkg:rpm/redhat/receptor
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el9ap
Red Hat:ansible_automation_platform_developer:2.5::el9
/
receptor-debuginfo
Package
Name
receptor-debuginfo
Purl
pkg:rpm/redhat/receptor-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el9ap
Red Hat:ansible_automation_platform_developer:2.5::el9
/
receptor-debugsource
Package
Name
receptor-debugsource
Purl
pkg:rpm/redhat/receptor-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el9ap
Red Hat:ansible_automation_platform_developer:2.5::el9
/
receptorctl
Package
Name
receptorctl
Purl
pkg:rpm/redhat/receptorctl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el9ap
Red Hat:ansible_automation_platform_inside:2.5::el9
/
receptor
Package
Name
receptor
Purl
pkg:rpm/redhat/receptor
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el9ap
Red Hat:ansible_automation_platform_inside:2.5::el9
/
receptor-debuginfo
Package
Name
receptor-debuginfo
Purl
pkg:rpm/redhat/receptor-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el9ap
Red Hat:ansible_automation_platform_inside:2.5::el9
/
receptor-debugsource
Package
Name
receptor-debugsource
Purl
pkg:rpm/redhat/receptor-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el9ap
Red Hat:ansible_automation_platform_inside:2.5::el9
/
receptorctl
Package
Name
receptorctl
Purl
pkg:rpm/redhat/receptorctl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
automation-gateway-proxy-openssl30
Package
Name
automation-gateway-proxy-openssl30
Purl
pkg:rpm/redhat/automation-gateway-proxy-openssl30
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.6-2.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
automation-gateway-proxy-openssl30-debugsource
Package
Name
automation-gateway-proxy-openssl30-debugsource
Purl
pkg:rpm/redhat/automation-gateway-proxy-openssl30-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.6-2.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
automation-gateway-proxy-openssl30-server
Package
Name
automation-gateway-proxy-openssl30-server
Purl
pkg:rpm/redhat/automation-gateway-proxy-openssl30-server
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.6-2.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
automation-gateway-proxy-openssl30-server-debuginfo
Package
Name
automation-gateway-proxy-openssl30-server-debuginfo
Purl
pkg:rpm/redhat/automation-gateway-proxy-openssl30-server-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.6-2.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
automation-gateway-proxy-openssl32
Package
Name
automation-gateway-proxy-openssl32
Purl
pkg:rpm/redhat/automation-gateway-proxy-openssl32
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.6-2.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
automation-gateway-proxy-openssl32-debugsource
Package
Name
automation-gateway-proxy-openssl32-debugsource
Purl
pkg:rpm/redhat/automation-gateway-proxy-openssl32-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.6-2.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
automation-gateway-proxy-openssl32-server
Package
Name
automation-gateway-proxy-openssl32-server
Purl
pkg:rpm/redhat/automation-gateway-proxy-openssl32-server
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.6-2.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
automation-gateway-proxy-openssl32-server-debuginfo
Package
Name
automation-gateway-proxy-openssl32-server-debuginfo
Purl
pkg:rpm/redhat/automation-gateway-proxy-openssl32-server-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:2.6.6-2.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
receptor
Package
Name
receptor
Purl
pkg:rpm/redhat/receptor
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
receptor-debuginfo
Package
Name
receptor-debuginfo
Purl
pkg:rpm/redhat/receptor-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
receptor-debugsource
Package
Name
receptor-debugsource
Purl
pkg:rpm/redhat/receptor-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
receptorctl
Package
Name
receptorctl
Purl
pkg:rpm/redhat/receptorctl
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.5.7-2.el9ap
Red Hat:ansible_automation_platform:2.5::el8
/
automation-eda-controller
Package
Name
automation-eda-controller
Purl
pkg:rpm/redhat/automation-eda-controller
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.1.11-1.el8ap
Red Hat:ansible_automation_platform:2.5::el8
/
automation-eda-controller-base
Package
Name
automation-eda-controller-base
Purl
pkg:rpm/redhat/automation-eda-controller-base
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.1.11-1.el8ap
Red Hat:ansible_automation_platform:2.5::el8
/
automation-eda-controller-base-services
Package
Name
automation-eda-controller-base-services
Purl
pkg:rpm/redhat/automation-eda-controller-base-services
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.1.11-1.el8ap
Red Hat:ansible_automation_platform:2.5::el8
/
automation-eda-controller-event-stream-services
Package
Name
automation-eda-controller-event-stream-services
Purl
pkg:rpm/redhat/automation-eda-controller-event-stream-services
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.1.11-1.el8ap
Red Hat:ansible_automation_platform:2.5::el8
/
automation-eda-controller-worker-services
Package
Name
automation-eda-controller-worker-services
Purl
pkg:rpm/redhat/automation-eda-controller-worker-services
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.1.11-1.el8ap
Red Hat:ansible_automation_platform:2.5::el9
/
automation-eda-controller
Package
Name
automation-eda-controller
Purl
pkg:rpm/redhat/automation-eda-controller
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.1.11-1.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
automation-eda-controller-base
Package
Name
automation-eda-controller-base
Purl
pkg:rpm/redhat/automation-eda-controller-base
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.1.11-1.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
automation-eda-controller-base-services
Package
Name
automation-eda-controller-base-services
Purl
pkg:rpm/redhat/automation-eda-controller-base-services
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.1.11-1.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
automation-eda-controller-event-stream-services
Package
Name
automation-eda-controller-event-stream-services
Purl
pkg:rpm/redhat/automation-eda-controller-event-stream-services
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.1.11-1.el9ap
Red Hat:ansible_automation_platform:2.5::el9
/
automation-eda-controller-worker-services
Package
Name
automation-eda-controller-worker-services
Purl
pkg:rpm/redhat/automation-eda-controller-worker-services
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:1.1.11-1.el9ap
RHSA-2025:9986 - OSV