[El-errata] OLAMSA-2026-0009 Important: Oracle Linux 8 ol-automation-manager security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Fri May 1 14:12:25 UTC 2026


Oracle Linux Security Advisory OLAMSA-2026-0009

http://linux.oracle.com/errata/OLAMSA-2026-0009.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
ol-automation-manager-2.3.1-10.el8.x86_64.rpm
ol-automation-manager-cli-2.3.1-10.el8.noarch.rpm
python311-olamkit-2.3.1-10.el8.noarch.rpm
python3.11-aiohttp-3.9.5-1.0.5.el8.x86_64.rpm
python3.11-django-4.2.30-1.0.1.el8.noarch.rpm
python3.11-galaxy-ng-4.10.1-1.0.4.el8.noarch.rpm


SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/ol-automation-manager-2.3.1-10.el8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/python-aiohttp-3.9.5-1.0.5.el8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/python-django-4.2.30-1.0.1.el8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/python-galaxy-ng-4.10.1-1.0.4.el8.src.rpm

Related CVEs:

CVE-2026-34520
CVE-2026-4277
CVE-2026-40175




Description of changes:

ol-automation-manager
[2.3.1-10.el8]
- OLAM-917 Bump axios to mitigate CVE-2026-40175

[2.3.1-9.el8]
- OLAM-914 Bump Django to mitigate CVE-2026-4277

[2.3.1-8.el8]
- OLAM-913 Apply patch on aiohttp to fix CVE-2026-34520

python-aiohttp
[3.9.5-1.0.5]
- OLAM-919 Apply patch for CVE-2026-34520

python-django
[4.2.30-1.0.1]
- OLAM-915 Bump Django to mitigate CVE-2026-4277

python-galaxy-ng
[4.10.1-1.0.4]
- OLAM-916 Bump axios (ansible-hub-ui) to mitigate CVE-2026-40175




More information about the El-errata mailing list