CVE-2020-10685
Exposure of Resource to Wrong Sphere and Insecure Temporary File in Ansible
描述
A flaw was found in Ansible Engine affecting Ansible Engine versions 2.7.x before 2.7.17 and 2.8.x before 2.8.11 and 2.9.x before 2.9.7 as well as Ansible Tower before and including versions 3.4.5 and 3.5.5 and 3.6.3 when using modules which decrypts vault files such as assemble, script, unarchive, win_copy, aws_s3 or copy modules. The temporary directory is created in /tmp leaves the s ts unencrypted. On Operating Systems which /tmp is not a tmpfs but part of the root partition, the directory is only cleared on boot and the decryp emains when the host is switched off. The system will be vulnerable when the system is not running. So decrypted data must be cleared as soon as possible and the data which normally is encrypted ble.
如何修補 CVE-2020-10685
要修補 CVE-2020-10685,請將受影響套件升級到下列已修補版本。
- —升級至 2.9.7+dfsg-1 或更新版本
- —升級至 2.7.17 或更新版本
- —升級至 2.7.17 或更新版本
CVE-2020-10685 正在被利用嗎?
低 — EPSS 為 0.4%,目前沒有觀察到大規模利用活動。
受影響套件(3)
- from 0, < 2.9.7+dfsg-1
- >= 2.7.0a1, < 2.7.17
- >= 2.7.0, < 2.7.17, >= 2.8.0, < 2.8.11, >= 2.9.0, < 2.9.7
CVSS 分數
| 來源 | 版本 | 嚴重程度 | 向量 |
|---|---|---|---|
| osv | CVSS 4.0 | — | CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N |
| osv | CVSS 3.1 | MEDIUM5.5 | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |