Ansible is shipped as a component of Data Science Experience Local. Information about a security vulnerability affecting Ansible has been published in a security bulletin.
CVE(s): CVE-2018-10874
Affected product(s) and affected version(s):
| Principal Product and Version(s) | Affected Supporting Product and Versions |
|---|---|
| IBM Data Science Experience Local 1.1.0 | Ansible 2.5.4 |
| IBM Data Science Experience Local 1.1.1 | Ansible 2.5.4 |
| IBM Data Science Experience Local 1.1.2 | Ansible 2.5.4 |
| IBM Data Science Experience Local 1.1.3 | Ansible 2.5.4 |
| IBM Data Science Experience Local 1.2.0 | Ansible 2.5.4 |
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10720045
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/145689
The post IBM Security Bulletin: A security vulnerability has been identified in Ansible shipped with Data Science Experience Local appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team https://ibm.co/2GDXJaM
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.