在 Ansible 集合中的 memcached 缓存插件中发现了一个缺陷。尽管其文档声称记录以 JSON 格式存储,但该插件并未进行显式的序列化操作,而是依赖 库,该库在写入时使用 pickle 进行序列化,在读取时进行反序列化。 由于 memcached 服务通常无需身份验证,且缓存键是可预测的,攻击者如果能够访问暴露于网络或共享环境中的 memcached 实例,可以写入一个经过构造的 pickle 载荷。当被污染的 fact 缓存下次被读取时,该载荷会在 Ansible 控制器上被反序列化并执行,从而导致远
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Ceph Storage 5 | - |
cpe:/a:redhat:ceph_storage:5
|
|
| Red Hat | Red Hat Ceph Storage 9 | - |
cpe:/a:redhat:ceph_storage:9
|
|
| Red Hat | Red Hat OpenStack Platform 17.1 | - |
cpe:/a:redhat:openstack:17.1
|
|
| Red Hat | Red Hat OpenStack Platform 18.0 | - |
cpe:/a:redhat:openstack:18.0
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-87766 | 8.8 HIGH | Bubblewrap: bubblewrap: symlink traversal via /oldroot allows writing files outside sandbo |
| CVE-2026-18147 | 8.1 HIGH | Freeipa: ipa: freeipa/idm: cross-site scripting vulnerability allows arbitrary code execut |
| CVE-2026-87853 | 7.5 HIGH | Sssd: sssd: idp authentication prefix comparison allows cross-user impersonation |
| CVE-2026-87872 | 6.8 MEDIUM | Community.general: community.general: ocapi module_utils (ocapi_command, ocapi_info) hardc |
| CVE-2026-19729 | 4.9 MEDIUM | Keycloak-services: keycloak-services: incomplete fix for arbitrary filesystem path probing |
| CVE-2026-87875 | 4.3 MEDIUM | Cups: openprinting cups: heap out-of-bounds read in cupsutf32toutf8() via missing source-l |
| CVE-2026-87876 | 3.0 LOW | Cups: openprinting cups: remaining case-insensitive username matching in scheduler side pa |
No comments yet