CVE-2018-10875
A flaw was found in ansible. ansible.cfg is read from the current working directory which can be altered to make it point to a plugin or a module path under the control of an attacker, thus allowing the attacker to execute arbitrary code.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.59%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
A flaw was found in ansible. ansible.cfg is read from the current working directory which can be altered to make it point to a plugin or a module path under the control of an attacker, thus allowing the attacker to execute arbitrary code.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.59% probability · 46th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-426
- Affected
- redhat/ansible engine · redhat/ceph storage · redhat/gluster storage · redhat/openshift · redhat/openstack · redhat/virtualization · redhat/virtualization host · debian/debian linux · suse/package hub · canonical/ubuntu linux
- Source
- secalert@redhat.com
References
- http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00021.htmlThird Party Advisory
- http://www.securitytracker.com/id/1041396Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHBA-2018:3788Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2150Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2151Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2152Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2166Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2321Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2585Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:0054Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10875Issue Tracking, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2019/09/msg00016.htmlThird Party Advisory
- https://usn.ubuntu.com/4072-1/Third Party Advisory
- https://www.debian.org/security/2019/dsa-4396Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00021.htmlThird Party Advisory
- http://www.securitytracker.com/id/1041396Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHBA-2018:3788Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2150Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2151Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2152Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2166Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2321Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2585Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:0054Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10875Issue Tracking, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2019/09/msg00016.htmlThird Party Advisory
- https://usn.ubuntu.com/4072-1/Third Party Advisory
- https://www.debian.org/security/2019/dsa-4396Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.