Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f556-49jc-4rvc

Опубликовано: 31 окт. 2025
Источник: github
Github: Прошло ревью
CVSS3: 5

Описание

Ansible does not collect garbage after playbook run

A flaw was found in Ansible Base when using the aws_ssm connection plugin as its garbage collector is not happening after the playbook run is completed. Files would remain in the bucket exposing the data. This issue directly affects data confidentiality.

Пакеты

Наименование

ansible

pip
Затронутые версииВерсия исправления

< 2.10.1

2.10.1

EPSS

Процентиль: 34%
0.00136
Низкий

5 Medium

CVSS3

Дефекты

CWE-212

Связанные уязвимости

CVSS3: 5
ubuntu
больше 5 лет назад

A flaw was found in Ansible Base when using the aws_ssm connection plugin as garbage collector is not happening after playbook run is completed. Files would remain in the bucket exposing the data. This issue affects directly data confidentiality.

CVSS3: 5
redhat
больше 5 лет назад

A flaw was found in Ansible Base when using the aws_ssm connection plugin as garbage collector is not happening after playbook run is completed. Files would remain in the bucket exposing the data. This issue affects directly data confidentiality.

CVSS3: 5
nvd
больше 5 лет назад

A flaw was found in Ansible Base when using the aws_ssm connection plugin as garbage collector is not happening after playbook run is completed. Files would remain in the bucket exposing the data. This issue affects directly data confidentiality.

CVSS3: 5
debian
больше 5 лет назад

A flaw was found in Ansible Base when using the aws_ssm connection plu ...

EPSS

Процентиль: 34%
0.00136
Низкий

5 Medium

CVSS3

Дефекты

CWE-212