{
  "schema_version": "1.7.0",
  "id": "RHSA-2019:0564",
  "related": [],
  "upstream": [
    "CVE-2018-16837",
    "CVE-2018-16876"
  ],
  "published": "2024-09-13T15:10:11Z",
  "modified": "2026-02-21T10:02:42Z",
  "summary": "Red Hat Security Advisory: Red Hat Enterprise Linux OpenStack Platform security update",
  "severity": [
    {
      "type": "CVSS_V3",
      "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
    }
  ],
  "affected": [
    {
      "package": {
        "name": "python-barbicanclient",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python-barbicanclient"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.6.0-2.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-openstackclient",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python-openstackclient"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:3.14.3-2.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-openstackclient-lang",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python-openstackclient-lang"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:3.14.3-2.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-openstacksdk",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python-openstacksdk"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:0.11.3-2.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python2-barbicanclient",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python2-barbicanclient"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:4.6.0-2.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python2-openstackclient",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python2-openstackclient"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:3.14.3-2.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python2-openstacksdk",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python2-openstacksdk"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:0.11.3-2.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ansible",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/ansible"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.6.11-1.el7ae"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "openstack-ec2-api",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/openstack-ec2-api"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:6.0.1-0.20181123223255.1e25260.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "openstack-manila",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/openstack-manila"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:6.0.2-5.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "openstack-manila-share",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/openstack-manila-share"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:6.0.2-5.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "openstack-selinux",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/openstack-selinux"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:0.8.17-2.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "openstack-tempest",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/openstack-tempest"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:18.0.0-6.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "openstack-tempest-all",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/openstack-tempest-all"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:18.0.0-6.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "os-apply-config",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/os-apply-config"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:8.3.1-0.20180831234255.be699ba.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-docker",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python-docker"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:2.4.2-2.el7"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-ec2-api-tests",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python-ec2-api-tests"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:6.0.1-0.20181123223255.1e25260.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-heat-tests-tempest",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python-heat-tests-tempest"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:0.1.1-0.20180514163845.9d99219.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-manila",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python-manila"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:6.0.2-5.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-manila-tests",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python-manila-tests"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:6.0.2-5.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-novajoin",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python-novajoin"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:1.0.22-1.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-vmware-nsxlib",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python-vmware-nsxlib"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:12.0.4-3.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python2-ec2-api",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python2-ec2-api"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:6.0.1-0.20181123223255.1e25260.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python2-heat-tests-tempest",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python2-heat-tests-tempest"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:0.1.1-0.20180514163845.9d99219.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python2-tempest",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python2-tempest"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:18.0.0-6.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python2-tempest-tests",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python2-tempest-tests"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "1:18.0.0-6.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python2-vmware-nsxlib",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python2-vmware-nsxlib"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:12.0.4-3.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python2-vmware-nsxlib-tests",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/python2-vmware-nsxlib-tests"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:12.0.4-3.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "rhosp-release",
        "ecosystem": "Red Hat:openstack:13::el7",
        "purl": "pkg:rpm/redhat/rhosp-release"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "0:13.0.5-1.el7ost"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    }
  ],
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2019:0564"
    },
    {
      "type": "ARTICLE",
      "url": "https://access.redhat.com/security/updates/classification/#low"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1568341"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1594026"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1639989"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1642102"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1643167"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1652297"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1657330"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1659597"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1663498"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1666927"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1667259"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1668560"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1669146"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1669309"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1669598"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1669624"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1669669"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1676317"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1676446"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1676649"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1679984"
    },
    {
      "type": "ADVISORY",
      "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2019/rhsa-2019_0564.json"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2018-16837"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1640642"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-16837"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-16837"
    },
    {
      "type": "ARTICLE",
      "url": "https://github.com/ansible/ansible/pull/47436"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2018-16876"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2018-16876"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-16876"
    },
    {
      "type": "ARTICLE",
      "url": "https://github.com/ansible/ansible/pull/49569"
    }
  ]
}