1
Candidate: CVE-2013-4260
4
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4260
5
https://groups.google.com/forum/#!topic/ansible-project/UVDYW0HGcNg
7
lib/ansible/playbook/__init__.py in Ansible 1.2.x before 1.2.3, when
8
playbook does not run due to an error, allows local users to overwrite
9
arbitrary files via a symlink attack on a retry file with a predictable
10
name in /var/tmp/ansible/.
14
https://bugs.launchpad.net/ubuntu/+source/ansible/+bug/1256068
20
upstream_ansible: released (1.2.3)
25
saucy_ansible: ignored (reached end-of-life)
26
trusty_ansible: not-affected (1.5.4+dfsg-1)
27
devel_ansible: not-affected (1.5.4+dfsg-1)