peter bassill · operator
$ cve CVE-2017-7481 JSON

CVE-2017-7481

9.8
CRITICAL · CVSS 3.1 · EPSS 4.8% (pctl 92)

In your normal cycle

Critical by CVSS (9.8), but no sign of active exploitation.

Description

Ansible before versions 2.3.1.0 and 2.4.0.0 fails to properly mark lookup-plugin results as unsafe. If an attacker could control the results of lookup() calls, they could inject Unicode strings to be parsed by the jinja2 templating system, resulting in code execution. By default, the jinja2 templating language is now marked as 'unsafe' and is not evaluated.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS4.78% — more likely to be exploited than 92% of all CVEs
WeaknessCWE-20
On CISA KEVno
Public exploitnone known
Published2018-07-19
Last modified2026-06-17

Affected (10)

VendorProduct
canonicalubuntu linux
debiandebian linux
redhatansible engine
redhatenterprise linux
redhatgluster storage
redhatopenshift container platform
redhatopenstack
redhatstorage console
redhatvirtualization
redhatvirtualization manager

References

→ the Explorer  ·  watch your stack  ·  NVD