REDHAT-BUG-2379359: Low severity Red Hat Ansible vulnerability
Published Jul 10, 2025
·Updated
A flaw was found in Ansible. Three API endpoints were accessed and returned verbose, unauthenticated responses, which may contain important information for an malicious user to perform other attacks.
Affected Software
1 affected component
Red Hat Ansible
Event History
Jul 10, 2025
Data Sourced
via Red Hat·07:21 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2379359?
The severity of REDHAT-BUG-2379359 is categorized as a moderate security issue due to the potential exposure of sensitive information.
2
How do I fix REDHAT-BUG-2379359?
To fix REDHAT-BUG-2379359, update Ansible to the latest version where the vulnerability has been patched.
3
What are the risks associated with REDHAT-BUG-2379359?
The risks include potential information disclosure that could help a malicious user perform further attacks.
4
Which versions of Ansible are affected by REDHAT-BUG-2379359?
Versions of Ansible prior to the latest patch are affected by REDHAT-BUG-2379359.
5
Is authentication required to exploit REDHAT-BUG-2379359?
No authentication is required to exploit REDHAT-BUG-2379359 since the API endpoints return unauthenticated responses.