An information disclosure flaw was found in ansible-core due to a failure to respect the ANSIBLE_NO_LOG configuration in some scenarios. Information is still included in the output in certain tasks, such as loop items. Depending on the task, this issue may include sensitive information, such as decrypted secret values.
History

Fri, 17 Jan 2025 20:45:00 +0000

Type Values Removed Values Added
References

Fri, 17 Jan 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2025-01-17T20:02:51.797Z

Reserved: 2024-01-18T16:03:22.626Z

Link: CVE-2024-0690

cve-icon Vulnrichment

Updated: 2025-01-17T20:02:51.797Z

cve-icon NVD

Status : Modified

Published: 2024-02-06T12:15:55.530

Modified: 2025-01-17T20:15:27.403

Link: CVE-2024-0690

cve-icon Redhat

Severity : Moderate

Publid Date: 2024-01-18T00:00:00Z

Links: CVE-2024-0690 - Bugzilla