Security Advisory

CVE-2014-4658

5.5
MEDIUM

Vulnerability Description

The vault subsystem in Ansible before 1.5.5 does not set the umask before creation or modification of a vault file, which allows local users to obtain sensitive key information by reading a file.
Published Date February 20, 2020
Official Source NIST NVD Advisory