Database/Control plane, storage & DevOps
ansible-runner: streamed archive extraction follows symlinks and writes outside the target directory
Impact
The worker side of ansible-runner's transmit/worker protocol unpacks a streamed zip archive without validating symlink targets or member paths, and then applies chmod() and utime() to those unsanitized paths. A crafted archive can create files, plant symlinks, or change permissions anywhere the worker process can write - which Red Hat's assessment says can be leveraged toward code execution. On a GPU fleet this matters because ansible-runner workers are the thing that configures nodes: a worker that consumes attacker-influenced input can be turned into a foothold on the automation path that drives driver installs, firmware pushes and node provisioning across the whole fleet. Integrity impact, not confidentiality, per the record.
Who can reach it
An actor who can influence the archive content a worker consumes over the transmit/worker protocol. The record's vector is network with low privileges required and high attack complexity, so it needs an existing authenticated position that feeds jobs into a worker rather than anonymous reachability.
What to do
Track the upstream fix in ansible-runner PR #1550 and the Red Hat Ansible Automation Platform 2 errata; the record names no fixed version, so apply the vendor update when it ships. In the meantime, treat worker nodes as trusting their job source: do not let untrusted parties submit transmit payloads, and run workers as unprivileged users in constrained containers so an escaped write lands somewhere harmless. The fix is a package update to the automation controller and its workers, not a node-level change.
References
Related entries
- DMTF libspdm - SPDM Requester timeout handling: A libspdm Requester stores the Responder's CTExponentCVE-2023-32690 · DMTF libspdm - SPDM Requester timeout handlingMedium
- Dell OpenManage Enterprise (path traversal): An unauthenticated remote attacker reads files from the OME serverCVE-2024-25944 · Dell OpenManage Enterprise (path traversal)Medium
- Elastic Metricbeat: oversized Prometheus remote_write request drives an unbounded allocation and kills the beatCVE-2026-26931 · Elastic Metricbeat (Prometheus remote_write HTTP handler)Medium
- AMD Zen 1 / Zen 2 / Zen 3 - execution unit scheduler queue contention (SMT): AMD's split scheduler design gives eachCVE-2021-46778 · AMD Zen 1 / Zen 2 / Zen 3 - execution unit scheduler queue contention (SMT)Medium
- IBM Spectrum Scale / GPFS node file access path: An unprivileged but authenticated user on a GPFS node reads arbitraryCVE-2018-1723 · IBM Spectrum Scale / GPFS node file access pathMedium
- IBM GPFS command line utility: Any unprivileged user with a shell on a GPFS node can force GPFS down on that nodeCVE-2018-1783 · IBM GPFS command line utilityMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.