Oval Definition:oval:org.opensuse.security:def:201810855
Revision Date:2022-06-30Version:1
Title:CVE-2018-10855
Description:

Ansible 2.5 prior to 2.5.5, and 2.4 prior to 2.4.5, do not honor the no_log task flag for failed tasks. When the no_log flag has been used to protect sensitive data passed to a task from being logged, and that task does not run successfully, Ansible will expose sensitive data in log files and on the terminal of the user running Ansible.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-10855
SUSE-SU-2018:4130-1
openSUSE-SU-2019:0238-1
Mitre CVE-2018-10855
SUSE CVE-2018-10855
SUSE-SU-2018:4130-1
openSUSE-SU-2019:0238-1
Platform(s):openSUSE Tumbleweed
SUSE Linux Enterprise High Performance Computing 15
SUSE Linux Enterprise Server 11 SP3-TERADATA
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server for SAP Applications 11 SP3-TERADATA
SUSE Linux Enterprise Server for SAP Applications 15
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE Package Hub for SUSE Linux Enterprise 15
Product(s):
Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND ansible is not affected
  • Definition Synopsis
  • Release Information
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND ansible-2.4.6.0-3.3.1 is installed
  • OR Package Information
  • SUSE OpenStack Cloud 8 is installed
  • AND
  • ansible-2.4.6.0-3.3.1 is installed
  • OR ansible1 is affected
  • Definition Synopsis
  • SUSE Package Hub for SUSE Linux Enterprise 15 is installed
  • AND ansible-2.7.6-bp150.3.3 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP3-TERADATA is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 11 SP3-TERADATA is installed
  • AND Package Information
  • ansible-2.9.9-11.8 is installed
  • OR python-coverage-3.6-0.11.2 is installed
  • OR python-passlib-1.6.1-0.3.2 is installed
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • ansible-2.9.24-1.2 is installed
  • OR ansible-doc-2.9.24-1.2 is installed
  • OR ansible-test-2.9.24-1.2 is installed
  • Definition Synopsis
  • SUSE Package Hub for SUSE Linux Enterprise 15 is installed
  • AND ansible-2.7.6-bp150.3.3.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP3-TERADATA is installed
  • AND Package Information
  • ansible-2.9.9-11.8.1 is installed
  • OR python-coverage-3.6-0.11.2.1 is installed
  • OR python-passlib-1.6.1-0.3.2.1 is installed
  • BACK