Wind River Support Network

HomeDefectsLIN1021-7098
Not to be fixed

LIN1021-7098 : Security Advisory - python-ansible - CVE-2024-0690

Created: Jan 19, 2024    Updated: Mar 14, 2024
Resolved Date: Mar 14, 2024
Found In Version: 10.21.20.1
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

An information disclosure flaw was found in ansible-core due to a failure to respect the ANSIBLE_NO_LOG configuration in some scenarios. It was discovered that information is still included in the output in certain tasks, such as loop items. Depending on the task, this issue may include sensitive information, such as decrypted secret values.

https://nvd.nist.gov/vuln/detail/CVE-2024-0690
Live chat
Online