PT-2020-5155 · Red Hat+2 · Ansible+2

Samdoran

·

Published

2019-09-03

·

Updated

2026-06-03

·

CVE-2020-1734

CVSS v4.0

8.5

High

VectorAV:L/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:L/SC:H/SI:H/SA:L
Name of the Vulnerable Software and Affected Versions Ansible (affected versions not specified)
Description The issue is related to the pipe lookup plugin of Ansible, where arbitrary commands can be run when the plugin uses subprocess.Popen() with shell=True by overwriting Ansible facts. The variable is not escaped by the quote plugin, allowing an attacker to take advantage and run arbitrary commands by overwriting the Ansible facts. This could potentially allow a perpetrator to elevate their privileges and execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

OS Command Injection

Weakness Enumeration

Related Identifiers

ALT-PU-2019-2615
ALT-PU-2020-1490
BDU:2020-05762
CVE-2020-1734
GHSA-H39Q-95Q5-9JFP
OPENSUSE-SU-2022:0081-1
OPENSUSE-SU-2024:10615-1
OPENSUSE-SU-2024:14244-1
OPENSUSE-SU-2024:14536-1
OPENSUSE-SU-2025:15605-1
OPENSUSE-SU-2025:15753-1
OPENSUSE-SU-2026:10944-1
PYSEC-2020-6
SUSE-SU-2020:3309-1
SUSE-SU-2022:3338-1
SUSE-SU-2022:3339-1

Affected Products

Alt Linux
Ansible
Debian