diff options
author | Brian Coca <bcoca@users.noreply.github.com> | 2020-03-24 15:46:56 -0400 |
---|---|---|
committer | Matt Clay <matt@mystile.com> | 2020-04-14 19:13:51 -0700 |
commit | 0b4788a71fc7d24ffa957a94ee5e23d6a9733ab0 (patch) | |
tree | 8677e19d202324c5b9cedbee6e1d77c01a58d66e /bin/ansible-connection | |
parent | 51d2514753544a9d58cd7524e27e696b2c944fb5 (diff) | |
download | ansible-0b4788a71fc7d24ffa957a94ee5e23d6a9733ab0.tar.gz |
prevent ansible_facts injection (#68431)
- also only replace when needed
- switched from replace to index
- added test to verify bogus_facts are not accepted
CVE-2020-10684
(cherry picked from commit a9d2ceafe429171c0e2ad007058b88bae57c74ce)
Diffstat (limited to 'bin/ansible-connection')
0 files changed, 0 insertions, 0 deletions