[ALSA-2026:57149] Important: ansible-core security update
Type:
security
Severity:
important
Release date:
2026-08-20
Description:
Ansible is a radically simple model-driven configuration management, multi-node deployment, and remote task execution system. Ansible works over SSH and does not require any software or daemons to be installed on remote nodes. Extension modules can be written in any language and are transferred to managed machines automatically. Security Fix(es): * ansible-core: argument injection in ansible-galaxy role install leads to arbitrary code execution (CVE-2026-11332) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 ansible-core-2.14.18-3.el9_8.1.aarch64.rpm 16f40bdd4090111e38699bbfe25de32b9c5693d78e06cade2ee181f7b957a1d7
aarch64 ansible-test-2.14.18-3.el9_8.1.aarch64.rpm 660c8c0556ec21c2c10c929d53b1df3f09979e00dd08e24c3e7f587eb3f1a0ff
ppc64le ansible-test-2.14.18-3.el9_8.1.ppc64le.rpm 4487ac13b17fbdb64696d3201e50032553481764573dc5fac67628d2e0237b40
ppc64le ansible-core-2.14.18-3.el9_8.1.ppc64le.rpm 465808957b03cef67ffae1d8d325172c60225ff498dbbef7f0d5d89a061ca42e
s390x ansible-test-2.14.18-3.el9_8.1.s390x.rpm 6e56a91c504a95bcaed614f3715f3d025e66e0a0c671142db532f103cd88b036
s390x ansible-core-2.14.18-3.el9_8.1.s390x.rpm d4727fb6619bce82321edf39c46cbd7d9c5fba529a44fb779b65cf65e3d1d0fc
x86_64 ansible-test-2.14.18-3.el9_8.1.x86_64.rpm 6ff30ae7a16762d3d1fc418a75dedacd4e9e5f3edfc6e91b9995e45f037827e2
x86_64 ansible-core-2.14.18-3.el9_8.1.x86_64.rpm a786bebb8e312ac20213ba762ab5ddc9ad663729e1cbd5b2b4ee51330f27c37f
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.