CVE-2020-14332: Debian Linux

Medium severity, CVSS 5.5. EPSS: 0.4% chance of exploitation in the next 30 days.

A flaw was found in the Ansible Engine when using module_args. Tasks executed with check mode (--check-mode) do not properly neutralize sensitive data exposed in the event data. This flaw allows unauthorized users to read this data. The highest threat from this vulnerability is to confidentiality.

Affected products

  • Debian Debian Linux: version 10.0 only
  • Red Hat Ansible Engine: from 2.8.0, before 2.8.14 (fixed in 2.8.14); from 2.9.0, before 2.9.12 (fixed in 2.9.12)

Published 2020-09-11. Last modified 2026-06-17.