tripleo-ansible@6.0.0 vulnerabilities

Ansible assets for the TripleO project.

Direct Vulnerabilities

Known vulnerabilities in the tripleo-ansible package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • H
Incorrect Permission Assignment for Critical Resource

tripleo-ansible is an Ansible assets for the TripleO project.

Affected versions of this package are vulnerable to Incorrect Permission Assignment for Critical Resource such that the permissions of a sensitive file are not sufficiently restricted due to an insecure default configuration. This flaw allows a local attacker to use brute force to explore the relevant directory and discover the file, leading to information disclosure of important configuration details from the OpenStack deployment.

How to fix Incorrect Permission Assignment for Critical Resource?

There is no fixed version for tripleo-ansible.

[0,)
  • H
Incorrect Permission Assignment for Critical Resource

tripleo-ansible is an Ansible assets for the TripleO project.

Affected versions of this package are vulnerable to Incorrect Permission Assignment for Critical Resource such that the permissions of a sensitive file are not sufficiently restricted due to an insecure default configuration. This flaw allows a local attacker to use brute force to explore the relevant directory and discover the file. This issue leads to information disclosure of important configuration details from the OpenStack deployment.

How to fix Incorrect Permission Assignment for Critical Resource?

There is no fixed version for tripleo-ansible.

[0,)