CVE-2016-8628Command Injection in Redhat Ansible

CWE-77Command Injection12 documents7 sources
Severity
9.1CRITICALNVD
CNA7.6
EPSS
0.4%
top 37.87%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 31
Latest updateOct 10

Description

Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create special variables on the controller could execute arbitrary commands on Ansible clients as the user Ansible runs as.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:HExploitability: 2.3 | Impact: 6.0

Affected Packages4 packages

NVDredhat/ansible< 2.2.0
PyPIredhat/ansible< 2.2.0.0
Debianredhat/ansible< 2.2.0.0-1+3
CVEListV5red_hat/ansible2.2.0

🔴Vulnerability Details

4
GHSA
Ansible fails to properly sanitize fact variables sent from the Ansible controller2018-10-10
OSV
Ansible fails to properly sanitize fact variables sent from the Ansible controller2018-10-10
CVEList
CVE-2016-8628: Ansible before version 22018-07-31
OSV
CVE-2016-8628: Ansible before version 22018-07-31

📋Vendor Advisories

2
Red Hat
ansible: Command injection by compromised server via fact variables2016-11-01
Debian
CVE-2016-8628: ansible - Ansible before version 2.2.0 fails to properly sanitize fact variables sent from...2016

💬Community

5
Bugzilla
CVE-2016-8628 ansible: Command injection by compromised server via ansible_ssh_executable or ssh_args [fedora-all]2016-11-01
Bugzilla
CVE-2016-8628 ansible1.9: ansible: Command injection by compromised server via ansible_ssh_executable or ssh_args [fedora-all]2016-11-01
Bugzilla
CVE-2016-8628 ansible: Command injection by compromised server via ansible_ssh_executable or ssh_args [epel-all]2016-11-01
Bugzilla
CVE-2016-8628 ansible1.9: ansible: Command injection by compromised server via ansible_ssh_executable or ssh_args [epel-all]2016-11-01
Bugzilla
CVE-2016-8628 ansible: Command injection by compromised server via fact variables2016-10-24
CVE-2016-8628 — Command Injection in Redhat Ansible | cvebase