Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-8647

Опубликовано: 26 окт. 2016
Источник: redhat
CVSS3: 2.2
CVSS2: 3.5

Описание

An input validation vulnerability was found in Ansible's mysql_user module before 2.2.1.0, which may fail to correctly change a password in certain circumstances. Thus the previous password would still be active when it should have been changed.

An input validation vulnerability was found in Ansible's mysql_user module which may fail to correctly change a password in certain circumstances. Thus the previous password would still be active when it should have been changed.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Gluster Storage 3.1ansibleNot affected
Red Hat OpenShift Enterprise 3ansibleAffected
Red Hat OpenStack Platform 10 (Newton)ansibleNot affected
Red Hat OpenStack Platform 11 (Ocata)ansibleNot affected
Red Hat Quickstart Cloud Installer 1ansibleWill not fix
Red Hat Storage Console 2ansibleNot affected
Red Hat Virtualization Engine 4.1ansibleFixedRHSA-2017:168506.07.2017

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=1396174Ansible: in some circumstances the mysql_user module may fail to correctly change a password

2.2 Low

CVSS3

3.5 Low

CVSS2

Связанные уязвимости

CVSS3: 4.9
ubuntu
больше 7 лет назад

An input validation vulnerability was found in Ansible's mysql_user module before 2.2.1.0, which may fail to correctly change a password in certain circumstances. Thus the previous password would still be active when it should have been changed.

CVSS3: 4.9
nvd
больше 7 лет назад

An input validation vulnerability was found in Ansible's mysql_user module before 2.2.1.0, which may fail to correctly change a password in certain circumstances. Thus the previous password would still be active when it should have been changed.

CVSS3: 4.9
debian
больше 7 лет назад

An input validation vulnerability was found in Ansible's mysql_user mo ...

CVSS3: 4.9
github
больше 7 лет назад

Improper Input Validation in ansible

suse-cvrf
почти 2 года назад

Security update for SUSE Manager Client Tools

2.2 Low

CVSS3

3.5 Low

CVSS2