在 ansible-collection-redhat-leapp 中发现了一个漏洞。拥有受管节点 Leapp 报告内容特权写入权限的攻击者可以篡改该报告。当操作员运行特定的修复任务时,这种被篡改的报告会导致 Ansible 控制器读取其本地文件并将其复制到受管节点。该漏洞会导致信息泄露,可能暴露控制器端敏感数据,例如私钥或凭据。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 9 | any |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | - |
cpe:/o:redhat:enterprise_linux:10
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-16526 | 8.8 HIGH | Pcp: pcp: privilege escalation to root via linux_sockets pmda vulnerability |
| CVE-2026-58222 | 8.8 HIGH | Samba: samba ad ldap compare filter injection and trusted-request confusion disclose prote |
| CVE-2026-16524 | 7.8 HIGH | Pcp: pcp linux_sockets pmda: arbitrary command execution via command injection |
| CVE-2026-18381 | 7.6 HIGH | Project-koku/koku-metrics-operator: koku-metrics-operator: operator service-account token |
| CVE-2026-18378 | 7.6 HIGH | Project-koku/koku-metrics-operator: koku-metrics-operator: cluster pull-secret token exfil |
| CVE-2026-16529 | 7.5 HIGH | Pcp: pcp: denial of service due to signed integer overflow |
| CVE-2026-16527 | 7.3 HIGH | Pcp: pcp pmproxy: unauthenticated access to /store endpoint allows bypassing pmcd access r |
| CVE-2026-18382 | 6.8 MEDIUM | Project-koku/koku-metrics-operator: koku-metrics-operator: service-account client credenti |
| CVE-2026-16530 | 6.5 MEDIUM | Pcp: pcp: remote denial of service and information leakage |
| CVE-2026-18369 | 5.8 MEDIUM | Dogtag-pki: pki-core: redhat-pki: pki: acme http-01 validation ssrf via ip literal identif |
| CVE-2026-68563 | 5.5 MEDIUM | Ansible-collection-redhat-leapp: ansible-collection-redhat-leapp: information disclosure o |
| CVE-2026-16531 | 5.3 MEDIUM | Pcp: pcp: arbitrary file creation via path traversal in pmproxy logger servlet |
| CVE-2026-58218 | 5.3 MEDIUM | Samba: dns signing dos via tkey name cache exhaustion |
| CVE-2026-58216 | 5.3 MEDIUM | Samba: kpasswd service: kpasswd packet that contains malformed asn.1 might cause the serve |
No comments yet