PT-2018-5044 · Red Hat+1 · Ansible+1

Wouteroostervld

·

Published

2017-03-30

·

Updated

2024-05-06

·

CVE-2016-8647

CVSS v4.0

6.9

Medium

VectorAV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Ansible versions prior to 2.2.1.0
Description An input validation issue was discovered in the mysql user module, potentially causing password changes to fail under certain conditions, resulting in the previous password remaining active.
Recommendations For versions prior to 2.2.1.0, update to version 2.2.1.0 or later to resolve the issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2017-1386
CVE-2016-8647
GHSA-X4CM-M36H-C6QJ
MGASA-2017-0164
PYSEC-2018-58
RHSA-2017:1685
SUSE-SU-2020:3309-1
SUSE-SU-2024:1427-1
SUSE-SU-2024:1509-1

Affected Products

Alt Linux
Ansible