A privilege escalation flaw was found in the Ansible Automation Platform. This flaw allows a remote authenticated user with 'change user' permissions to modify the account settings of the superuser account and also remove the superuser privileges.
{ "binaries": [ { "binary_version": "2.12.0-1ubuntu0.1", "binary_name": "ansible-core" } ] }
{ "binaries": [ { "binary_version": "9.2.0+dfsg-0ubuntu5", "binary_name": "ansible" } ] }
{ "binaries": [ { "binary_version": "2.16.3-0ubuntu2", "binary_name": "ansible-core" } ] }
{ "binaries": [ { "binary_version": "11.2.0+dfsg-1", "binary_name": "ansible" } ] }
{ "binaries": [ { "binary_version": "2.18.1-4ubuntu1", "binary_name": "ansible-core" } ] }
{ "binaries": [ { "binary_version": "12.0.0~b1+dfsg-1", "binary_name": "ansible" } ] }
{ "binaries": [ { "binary_version": "2.19.0-1ubuntu1", "binary_name": "ansible-core" } ] }
{ "binaries": [ { "binary_version": "1.5.4+dfsg-1ubuntu0.1~esm3", "binary_name": "ansible" }, { "binary_version": "1.5.4+dfsg-1ubuntu0.1~esm3", "binary_name": "ansible-fireball" }, { "binary_version": "1.5.4+dfsg-1ubuntu0.1~esm3", "binary_name": "ansible-node-fireball" } ] }
{ "binaries": [ { "binary_version": "2.0.0.2-2ubuntu1.3+esm6", "binary_name": "ansible" }, { "binary_version": "2.0.0.2-2ubuntu1.3+esm6", "binary_name": "ansible-fireball" }, { "binary_version": "2.0.0.2-2ubuntu1.3+esm6", "binary_name": "ansible-node-fireball" } ] }
{ "binaries": [ { "binary_version": "2.5.1+dfsg-1ubuntu0.1+esm5", "binary_name": "ansible" } ] }
{ "binaries": [ { "binary_version": "2.9.6+dfsg-1ubuntu0.1~esm3", "binary_name": "ansible" } ] }
{ "binaries": [ { "binary_version": "2.10.7+merged+base+2.10.8+dfsg-1ubuntu0.1~esm4", "binary_name": "ansible" } ] }