AVG-1437 log
| Package | ansible |
| Status | Fixed |
| Severity | Medium |
| Type | information disclosure |
| Affected | 2.10.5-1 |
| Fixed | 2.10.7-1 |
| Current | 12.2.0-1 [extra] |
| Ticket | None |
| Created | Tue Jan 12 09:13:44 2021 |
| Issue | Severity | Remote | Type | Description |
|---|---|---|---|---|
| CVE-2021-20191 | Medium | No | Information disclosure | A flaw was found in ansible-collection where credentials such as secrets are being disclosed in console log by default and not protected by no_log feature... |
| CVE-2021-20180 | Medium | No | Information disclosure | A flaw was found in Ansible before version 2.10.6 where credentials such as secrets are being disclosed in console log by default and not protected by... |
| CVE-2021-20178 | Medium | No | Information disclosure | A flaw was found in Ansible before version 2.10.6 where the 'authkey' and 'privkey' credentials are disclosed by default and not protected by no_log feature... |
| Date | Advisory | Package | Type |
|---|---|---|---|
| 06 Feb 2021 | ASA-202102-9 | ansible | information disclosure |