CVE-2020-1735: Path Traversal
A flaw was found in the Ansible Engine when the fetch module is used. An attacker could intercept the module, inject a new path, and then choose a new destination path on the controller node. All versions in 2.7.x, 2.8.x and 2.9.x branches are believed to be vulnerable.
Other sources
When using the fetch module, a path injection allows a remote user to choose the destination path on the controller node. This vulnerability could be an insufficient patch of CVE-2019-3828.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/ansibleto a version that resolves this vulnerability.Fixed in 2.7.7+dfsg-1+deb10u1Fixed in 2.7.7+dfsg-1+deb10u2Fixed in 2.10.7+merged+base+2.10.8+dfsg-1Fixed in 7.3.0+dfsg-1Fixed in 7.7.0+dfsg-3 - Upgrade
Upgrade
redhat/ansible-engineto a version that resolves this vulnerability.Fixed in 2.7.17 - Upgrade
Upgrade
redhat/ansible-engineto a version that resolves this vulnerability.Fixed in 2.8.11 - Upgrade
Upgrade
redhat/ansible-engineto a version that resolves this vulnerability.Fixed in 2.9.7 - Upgrade
Upgrade
pip/ansibleto a version that resolves this vulnerability.Fixed in 2.9.8 - Upgrade
Upgrade
pip/ansibleto a version that resolves this vulnerability.Fixed in 2.8.12 - Upgrade
Upgrade
pip/ansibleto a version that resolves this vulnerability.Fixed in 2.7.18
Event History
Frequently Asked Questions
What is CVE-2020-1735?
CVE-2020-1735 is a vulnerability found in the Ansible Engine when the fetch module is used, allowing an attacker to intercept the module and inject a new path.
Which versions of Ansible Engine are affected by CVE-2020-1735?
All versions in the 2.7.x, 2.8.x, and 2.9.x branches of Ansible Engine are believed to be vulnerable.
What is the severity of CVE-2020-1735?
CVE-2020-1735 has a severity level of medium.
How can I fix CVE-2020-1735?
To fix CVE-2020-1735, you should update Ansible Engine to versions 2.7.17, 2.8.11, or 2.9.7, depending on the branch you are using.
Where can I find more information about CVE-2020-1735?
You can find more information about CVE-2020-1735 on Red Hat's security page: https://access.redhat.com/security/cve/CVE-2020-1735.