CVE-2016-8647 REJECTED

An input validation vulnerability was found in Ansible's mysql_user module before 2.2.1.0, which may fail to correctly change a password in certain circumstances. Thus the previous password would still be active when it should have been changed.

EPSS 0.17% · 38.2th percentile

Risk Scores

EPSS Score
0.17%
38.2th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSansible0, 2.3.1.0+dfsg-2, 2.5.0+dfsg-1

Timeline

References

Open in Interactive Console →