SSH-based configuration management, deployment, and task execution system

Edit Package ansible

Ansible is a radically simple model-driven configuration management, multi-node
deployment, and remote task execution system. Ansible works over SSH and does
not require any software or daemons to be installed on remote nodes. Extension
modules can be written in any language and are transferred to managed machines
automatically.

Refresh
Refresh
Source Files
Filename Size Changed
0001-Ensure-that-unsafe-is-more-difficult-to-lose-stable-.patch 0000082650 80.7 KB
0002-Ensure-ANSIBLE_NO_LOG-is-respected-CVE-2024-0690-825.patch 0000044210 43.2 KB
ansible-2.9.27.tar.gz 0014844836 14.2 MB
ansible-2.9.27.tar.gz.sha 0000000088 88 Bytes
ansible-rpmlintrc 0000000691 691 Bytes
ansible.changes 0000152792 149 KB
ansible.spec 0000014916 14.6 KB
Latest Revision
Victor Zhestkov's avatar Victor Zhestkov (vizhestkov) accepted request 1167044 from Pablo Suárez Hernández's avatar Pablo Suárez Hernández (PSuarezHernandez) (revision 7)
- Address issues where internal templating can cause unsafe
  variables to lose their unsafe designation (bsc#1216854, CVE-2023-5764)
  * breaking_changes:
    assert - Nested templating may result in an inability for the conditional
    to be evaluated. See the porting guide for more information.
- Address issue where ANSIBLE_NO_LOG was ignored (bsc#1219002, CVE-2024-0690)
- Added:
  * 0001-Ensure-that-unsafe-is-more-difficult-to-lose-stable-.patch
  * 0002-Ensure-ANSIBLE_NO_LOG-is-respected-CVE-2024-0690-825.patch

    kubectl_password in console log (CVE-2020-1753, bsc#1166389).
  * CVE-2020-14365, bsc#1175993: Previously, regardless of the
    disable_gpg_check option, packages were not GPG validated. They
    are now.
- Don't Require python-coverage, it is needed only for testing
  (bsc#1177948).
    (CVE-2020-14332, bsc#1174302)
    from the uri module (CVE-2020-14330, bsc#1174145).
- Add CVE-2020-10744_avoid_mkdir_p.patch (CVE-2020-10744, bsc#1171823) to fix
  insecure temporary directory creation.
- Remove CVE-2017-7550-jenkins-disallow-password-in-params.patch
  as it has been already included in 2.4.1.0
- includes fix for bsc#1099805 (CVE-2018-10874) Inventory
  variables are loaded from current working directory when
  running ad-hoc command that can lead to code execution
  (included upstream in 2.6.1).
- update to 2.3.2.0 (final) - bsc#1059235
    as "unsafe". bsc#1038785
- security update to rc4 of 2.2.1.0 version CVE-2016-9587,
  CVE-2016-8628, CVE-2016-8614, CVE-2016-8647, CVE-2016-9587
Comments 0
openSUSE Build Service is sponsored by