REDHAT-BUG-2312119: Medium severity Red Hat Ansible vulnerability
This CVE affects Ansible and is similar to CVE-2024-0690. The vulnerability arises due to improper handling of sensitive variables loaded from Ansible Vault files, potentially leading to the exposure of secret data during execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2312119?
The severity of REDHAT-BUG-2312119 is classified as high due to potential exposure of sensitive data.
How do I fix REDHAT-BUG-2312119?
To fix REDHAT-BUG-2312119, update to the latest version of Ansible that includes security patches addressing this vulnerability.
What are the potential impacts of REDHAT-BUG-2312119?
The potential impacts of REDHAT-BUG-2312119 include unauthorized access to sensitive information stored in Ansible Vault files.
Which versions of Ansible are affected by REDHAT-BUG-2312119?
REDHAT-BUG-2312119 affects all versions of Ansible that improperly handle sensitive variables from Vault files.
How can I mitigate the risks associated with REDHAT-BUG-2312119?
To mitigate risks associated with REDHAT-BUG-2312119, restrict access to Ansible Vault files and apply relevant security updates promptly.