REDHAT-BUG-2325171: Medium severity Ansible Ansible vulnerability

Published Nov 11, 2024
·
Updated

Unsafe tagging can be bypassed by using the hostvars object to indirectly reference the content and successfully template it

Requirements to exploit (if any): Access to mangle the content returned to a play (via lookup or module) that uses hostvars to reference the unsafe content.

Steps to reproduce : - have unsafe content from lookup or module, or defined: untrusted: !unsafe this{{varshould}}notbetemplated - reference it via the hostvars object debug: msg={{ hostvars['hostname']['untrusted']

Affected Software

1 affected component
Ansible Ansible

Event History

Nov 11, 2024
Data Sourced
via Red Hat·12:01 PM
DescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of REDHAT-BUG-2325171?

The severity of REDHAT-BUG-2325171 is classified as high due to the potential for unsafe content templating.

2

How do I fix REDHAT-BUG-2325171?

To fix REDHAT-BUG-2325171, ensure that your playbooks do not allow indirect referencing of unsafe content through the hostvars object.

3

What are the requirements to exploit REDHAT-BUG-2325171?

Exploitation of REDHAT-BUG-2325171 requires access to manipulate the content returned in a play that uses hostvars.

4

What impact does REDHAT-BUG-2325171 have on my system?

REDHAT-BUG-2325171 can lead to unauthorized access or execution of unsafe content, potentially affecting system integrity.

5

Is REDHAT-BUG-2325171 present in all versions of Red Hat?

REDHAT-BUG-2325171 may not be present in all versions; affected versions should be reviewed in vendor documentation.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203