CVE-2020-1739
published 2020-03-12CVE-2020-1739: A flaw was found in Ansible 2.7.16 and prior, 2.8.8 and prior, and 2.9.5 and prior when a password is set with the argument "password" of svn module, it is…
PriorityP415low3.9CVSS 3.1
AVLACLPRLUIRSUCLILAN
EPSS
0.36%
28.1th percentile
A flaw was found in Ansible 2.7.16 and prior, 2.8.8 and prior, and 2.9.5 and prior when a password is set with the argument "password" of svn module, it is used on svn command line, disclosing to other users within the same node. An attacker could take advantage by reading the cmdline file from that particular PID on the procfs.
Affected
30 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | ansible | < ansible 2.9.7+dfsg-1 (bookworm) | ansible 2.9.7+dfsg-1 (bookworm) |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| red_hat | ansible | — | — |
| red_hat | ansible | — | — |
| red_hat | ansible | — | — |
| redhat | ansible | <= 2.7.16 | — |
| redhat | ansible | >= 0 < 2.9.7+dfsg-1 | 2.9.7+dfsg-1 |
| redhat | ansible | >= 0 < 2.9.7+dfsg-1 | 2.9.7+dfsg-1 |
| redhat | ansible | >= 0 < 2.9.7+dfsg-1 | 2.9.7+dfsg-1 |
| redhat | ansible | >= 0 < 2.9.7+dfsg-1 | 2.9.7+dfsg-1 |
| redhat | ansible | >= 0 < 2.7.17 | 2.7.17 |
| redhat | ansible | >= 0 < 1.5.4+dfsg-1ubuntu0.1~esm3 | 1.5.4+dfsg-1ubuntu0.1~esm3 |
| redhat | ansible | >= 0 < 2.0.0.2-2ubuntu1.3+esm6 | 2.0.0.2-2ubuntu1.3+esm6 |
| redhat | ansible | >= 0 < 2.0.0.2-2ubuntu1.3+esm5 | 2.0.0.2-2ubuntu1.3+esm5 |
| redhat | ansible | >= 0 < 2.5.1+dfsg-1ubuntu0.1+esm5 | 2.5.1+dfsg-1ubuntu0.1+esm5 |
| redhat | ansible | >= 0 < 2.9.6+dfsg-1ubuntu0.1~esm3 | 2.9.6+dfsg-1ubuntu0.1~esm3 |
| redhat | ansible | 2.8.0 – 2.8.8 | — |
| redhat | ansible | >= 2.8.0a1 < 2.8.11 | 2.8.11 |
| redhat | ansible | 2.9.0 – 2.9.5 | — |
| redhat | ansible | >= 2.9.0a1 < 2.9.7 | 2.9.7 |
| redhat | ansible_tower | <= 3.3.4 | — |
CVSS provenance
nvdv3.13.9LOWCVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N
nvdv2.03.3LOWAV:L/AC:M/Au:N/C:P/I:P/A:N
osv4.3MEDIUM
vendor_ubuntu4.3MEDIUM
vendor_debian3.9LOW
vendor_redhat3.9LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Ansible regression
vendor_ubuntu·2025-03-28·CVSS 4.3
[MEDIUM] Ansible regression
Title: Ansible regression
Summary: USN 7330-1 introduced a regression in Ansible.
USN-7330-1 fixed vulnerabilities in Ansible. The update introduced a
regression when attempting to install Ansible on Ubuntu 16.04 LTS.
This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
It was discovered that Ansible did not properly verify certain fields
of X.509 certificates. An attacker could possibly use this issue to
spoof SSL servers if they were able to intercept network communications.
This issue only affected Ubuntu 14.04 LTS. (CVE-2015-3908)
Martin Carpenter discovered that certain connection plugins for Ansible
did not properly restrict users. An attacker with local access could
possibly use this issue to escape a restricted environment via symbolic
Ubuntu
Ansible vulnerabilities
vendor_ubuntu·2025-03-05·CVSS 4.3
CVE-2019-14904 [MEDIUM] Ansible vulnerabilities
Title: Ansible vulnerabilities
Summary: Several security issues were fixed in Ansible.
It was discovered that Ansible did not properly verify certain fields of
X.509 certificates. An attacker could possibly use this issue to spoof
SSL servers if they were able to intercept network communications. This
issue only affected Ubuntu 14.04 LTS. (CVE-2015-3908)
Martin Carpenter discovered that certain connection plugins for Ansible
did not properly restrict users. An attacker with local access could
possibly use this issue to escape a restricted environment via symbolic
links misuse. This issue only affected Ubuntu 14.04 LTS. (CVE-2015-6240)
Robin Schneider discovered that Ansible's apt_key module did not properly
verify key fingerprints. A remote attacker could possibly use this issue
to per
Red Hat
ansible: svn module leaks password when specified as a parameter
vendor_redhat·2020-02-18·CVSS 3.9
CVE-2020-1739 [LOW] CWE-200 ansible: svn module leaks password when specified as a parameter
ansible: svn module leaks password when specified as a parameter
A flaw was found in Ansible 2.7.16 and prior, 2.8.8 and prior, and 2.9.5 and prior when a password is set with the argument "password" of svn module, it is used on svn command line, disclosing to other users within the same node. An attacker could take advantage by reading the cmdline file from that particular PID on the procfs.
A flaw was found in Ansible Engine. When a password is set with the argument "password" of svn module, it is used on svn command line, disclosing to other users within the same node. An attacker could take advantage by reading the cmdline file from that particular PID on the procfs.
Statement: Ansible Engine 2.7.16, 2.8.10, and 2.9.6 as well as previous versions are affected.
Ansible Tower 3.4.5, 3
Debian
CVE-2020-1739: ansible - A flaw was found in Ansible 2.7.16 and prior, 2.8.8 and prior, and 2.9.5 and pri...
vendor_debian·2020·CVSS 3.9
CVE-2020-1739 [LOW] CVE-2020-1739: ansible - A flaw was found in Ansible 2.7.16 and prior, 2.8.8 and prior, and 2.9.5 and pri...
A flaw was found in Ansible 2.7.16 and prior, 2.8.8 and prior, and 2.9.5 and prior when a password is set with the argument "password" of svn module, it is used on svn command line, disclosing to other users within the same node. An attacker could take advantage by reading the cmdline file from that particular PID on the procfs.
Scope: local
bookworm: resolved (fixed in 2.9.7+dfsg-1)
bullseye: resolved (fixed in 2.9.7+dfsg-1)
forky: resolved (fixed in 2.9.7+dfsg-1)
sid: resolved (fixed in 2.9.7+dfsg-1)
trixie: resolved (fixed in 2.9.7+dfsg-1)
OSV
ansible regression
osv·2025-03-28·CVSS 4.3
[MEDIUM] ansible regression
ansible regression
USN-7330-1 fixed vulnerabilities in Ansible. The update introduced a
regression when attempting to install Ansible on Ubuntu 16.04 LTS.
This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
It was discovered that Ansible did not properly verify certain fields
of X.509 certificates. An attacker could possibly use this issue to
spoof SSL servers if they were able to intercept network communications.
This issue only affected Ubuntu 14.04 LTS. (CVE-2015-3908)
Martin Carpenter discovered that certain connection plugins for Ansible
did not properly restrict users. An attacker with local access could
possibly use this issue to escape a restricted environment via symbolic
links misuse. This issue only affected Ubuntu 14.04 LTS. (CVE-2
OSV
ansible vulnerabilities
osv·2025-03-05·CVSS 4.3
CVE-2015-3908 [MEDIUM] ansible vulnerabilities
ansible vulnerabilities
It was discovered that Ansible did not properly verify certain fields of
X.509 certificates. An attacker could possibly use this issue to spoof
SSL servers if they were able to intercept network communications. This
issue only affected Ubuntu 14.04 LTS. (CVE-2015-3908)
Martin Carpenter discovered that certain connection plugins for Ansible
did not properly restrict users. An attacker with local access could
possibly use this issue to escape a restricted environment via symbolic
links misuse. This issue only affected Ubuntu 14.04 LTS. (CVE-2015-6240)
Robin Schneider discovered that Ansible's apt_key module did not properly
verify key fingerprints. A remote attacker could possibly use this issue
to perform key injection, leading to the access of sensitive informati
GHSA
Exposure of Sensitive Information to an Unauthorized Actor in Ansible
ghsa·2021-04-07
CVE-2020-1739 [LOW] CWE-200 Exposure of Sensitive Information to an Unauthorized Actor in Ansible
Exposure of Sensitive Information to an Unauthorized Actor in Ansible
A flaw was found in Ansible 2.7.16 and prior, 2.8.8 and prior, and 2.9.5 and prior when a password is set with the argument "password" of svn module, it is used on svn command line, disclosing to other users within the same node. An attacker could take advantage by reading the cmdline file from that particular PID on the procfs.
OSV
Exposure of Sensitive Information to an Unauthorized Actor in Ansible
osv·2021-04-07
CVE-2020-1739 [LOW] Exposure of Sensitive Information to an Unauthorized Actor in Ansible
Exposure of Sensitive Information to an Unauthorized Actor in Ansible
A flaw was found in Ansible 2.7.16 and prior, 2.8.8 and prior, and 2.9.5 and prior when a password is set with the argument "password" of svn module, it is used on svn command line, disclosing to other users within the same node. An attacker could take advantage by reading the cmdline file from that particular PID on the procfs.
OSV
CVE-2020-1739: A flaw was found in Ansible 2
osv·2020-03-12·CVSS 3.9
CVE-2020-1739 [LOW] CVE-2020-1739: A flaw was found in Ansible 2
A flaw was found in Ansible 2.7.16 and prior, 2.8.8 and prior, and 2.9.5 and prior when a password is set with the argument "password" of svn module, it is used on svn command line, disclosing to other users within the same node. An attacker could take advantage by reading the cmdline file from that particular PID on the procfs.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-2167 openshift/jenkins-plugin: Deserialization in snakeyaml YAML() objects allows for remote code execution
bugzilla·2020-03-24·CVSS 8.8
CVE-2020-2167 [HIGH] CVE-2020-2167 openshift/jenkins-plugin: Deserialization in snakeyaml YAML() objects allows for remote code execution
CVE-2020-2167 openshift/jenkins-plugin: Deserialization in snakeyaml YAML() objects allows for remote code execution
The openshift-pipeline Jenkins plugin, as included in OpenShift's jenkins-2-plugins package, is vulnerable to remote code exection via deserializtion of YAML via the bundled SnakeYAML library. Authenticated Jenkins could users exploit this vulnerability to execute arbitrary code on the Jenkins server.
Discussion:
External References:
https://jenkins.io/security/advisory/2020-03-25/#SECURITY-1739
---
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 3.11
Via RHSA-2020:0964 https://access.redhat.com/errata/RHSA-2020:0964
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s)
Bugzilla
CVE-2020-1739 ansible: svn module leaks password when specified as a parameter [openstack-rdo]
bugzilla·2020-02-27·CVSS 3.9
CVE-2020-1739 [LOW] CVE-2020-1739 ansible: svn module leaks password when specified as a parameter [openstack-rdo]
CVE-2020-1739 ansible: svn module leaks password when specified as a parameter [openstack-rdo]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of openstack-rdo.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Fixed by update to
Bugzilla
CVE-2020-1739 ansible: svn module leaks password when specified as a parameter [epel-all]
bugzilla·2020-02-20·CVSS 3.9
CVE-2020-1739 [LOW] CVE-2020-1739 ansible: svn module leaks password when specified as a parameter [epel-all]
CVE-2020-1739 ansible: svn module leaks password when specified as a parameter [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supporte
Bugzilla
CVE-2020-1739 ansible: svn module leaks password when specified as a parameter [fedora-all]
bugzilla·2020-02-20·CVSS 3.9
CVE-2020-1739 [LOW] CVE-2020-1739 ansible: svn module leaks password when specified as a parameter [fedora-all]
CVE-2020-1739 ansible: svn module leaks password when specified as a parameter [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supp
Bugzilla
CVE-2020-1739 ansible: svn module leaks password when specified as a parameter
bugzilla·2020-02-12·CVSS 3.9
CVE-2020-1739 [LOW] CVE-2020-1739 ansible: svn module leaks password when specified as a parameter
CVE-2020-1739 ansible: svn module leaks password when specified as a parameter
When a password is set with the argument "password" of svn module, it is used on svn command line, disclosing to other users within the same node.
Discussion:
Acknowledgments:
Name: Damien Aumaitre (Quarkslab), Nicolas Surbayrole (Quarkslab)
---
Is there are related upstream issue?
---
Created ansible tracking bugs for this issue:
Affects: epel-all [bug 1805322]
Affects: fedora-all [bug 1805321]
---
Hey Salvatore, I am working to provide additional information regarding this issue; more details as you requested, affected versions as well as upstream links in case we already have. Prioritising this for now, I will get back to you asap.
In reply to comment #4:
> Is there are related upstream issue?
--
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1739https://github.com/ansible/ansible/issues/67797https://lists.debian.org/debian-lts-announce/2020/05/msg00005.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FWDK3QUVBULS3Q3PQTGEKUQYPSNOU5M3/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/QT27K5ZRGDPCH7GT3DRI3LO4IVDVQUB7/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/U3IMV3XEIUXL6S4KPLYYM4TVJQ2VNEP2/https://www.debian.org/security/2021/dsa-4950https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1739https://github.com/ansible/ansible/issues/67797https://lists.debian.org/debian-lts-announce/2020/05/msg00005.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/FWDK3QUVBULS3Q3PQTGEKUQYPSNOU5M3/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/QT27K5ZRGDPCH7GT3DRI3LO4IVDVQUB7/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/U3IMV3XEIUXL6S4KPLYYM4TVJQ2VNEP2/https://www.debian.org/security/2021/dsa-4950
2020-03-12
Published