The create_script function in the lxc_container module in Ansible before 1.9.6-1 and 2.x before 2.0.2.0 allows local users to write to arbitrary files or gain privileges via a symlink attack on (1) /opt/.lxc-attach-script, (2) the archived container in the archive_path directory, or the (3) lxc-attach-script.log or (4) lxc-attach-script.err files in the temporary directory.
2016-06-03T14:59:04.263
2025-04-12T10:46:40.837
Deferred
CVSSv3.0: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | fedoraproject | fedora | 22 | Yes |
Operating System | fedoraproject | fedora | 23 | Yes |
Operating System | fedoraproject | fedora | 24 | Yes |
Application | redhat | ansible | ≤ 1.9.6 | Yes |
Application | redhat | ansible | 2.0 | Yes |
Application | redhat | ansible | 2.0.1 | Yes |