CVE-2020-10685
Last modified
CVE-2020-10685 is a medium-severity vulnerability rated 5.5/10 on the CVSS scale. A flaw was found in Ansible Engine affecting Ansible Engine versions 2.7.x before 2.7.17 and 2.8.x before 2.8.11 and 2.9.x before 2.9.7 as well as Ansible Tower before and including versions 3.4.5 and 3.5.5 and 3.6.3 when using modules which decrypts vault files such as assemble, script, unarchive, win_copy, aws_s3 or copy modules. The temporary directory is created in /tmp leaves the s ts unencrypted. EPSS estimates a 0.38% chance of exploitation in the next 30 days.
Description
A flaw was found in Ansible Engine affecting Ansible Engine versions 2.7.x before 2.7.17 and 2.8.x before 2.8.11 and 2.9.x before 2.9.7 as well as Ansible Tower before and including versions 3.4.5 and 3.5.5 and 3.6.3 when using modules which decrypts vault files such as assemble, script, unarchive, win_copy, aws_s3 or copy modules. The temporary directory is created in /tmp leaves the s ts unencrypted. On Operating Systems which /tmp is not a tmpfs but part of the root partition, the directory is only cleared on boot and the decryp emains when the host is switched off. The system will be vulnerable when the system is not running. So decrypted data must be cleared as soon as possible and the data which normally is encrypted ble.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Redhat | Ansible Engine | >= 2.7.0, < 2.7.17 |
| Redhat | Ansible Engine | >= 2.8.0, < 2.8.11 |
| Redhat | Ansible Engine | >= 2.9.0, < 2.9.7 |
| Redhat | Ansible Tower | <= 3.4.5 |
| Redhat | Ansible Tower | >= 3.5.0, <= 3.5.5 |
| Redhat | Ansible Tower | >= 3.6.0, <= 3.6.3 |
| Redhat | Ceph Storage | 2.0 |
| Redhat | Ceph Storage | 3.0 |
| Redhat | Openstack | 10 |
| Redhat | Openstack | 13 |
| Redhat | Openstack | 15 |
| Redhat | Storage | 3.0 |
| Debian | Debian Linux | 10.0 |
References
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10685Issue Tracking, Patch, Vendor Advisory
- https://github.com/ansible/ansible/pull/68433Patch, Third Party Advisory
- https://security.gentoo.org/glsa/202006-11Third Party Advisory
- https://www.debian.org/security/2021/dsa-4950Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10685Issue Tracking, Patch, Vendor Advisory
- https://github.com/ansible/ansible/pull/68433Patch, Third Party Advisory
- https://security.gentoo.org/glsa/202006-11Third Party Advisory
- https://www.debian.org/security/2021/dsa-4950Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-10685?
How severe is CVE-2020-10685?
How do I fix CVE-2020-10685?
Are you affected by CVE-2020-10685?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
