Container Privilege Escalation in Ansible Automation Platform
CVE-2025-57847
Key Information:
- Vendor
Red Hat
- Vendor
- CVE Published:
- 8 April 2026
What is CVE-2025-57847?
A significant security flaw exists within the Ansible Automation Platform due to the improper setting of permissions for the /etc/passwd file during the image build process. This issue allows an attacker with command execution capabilities in a vulnerable container, even as a non-root user, to manipulate the /etc/passwd file if they are part of the root group. By exploiting this vulnerability, an attacker could introduce a new user with any user ID, potentially granting them root privileges within the container environment. Organizations are advised to review their deployment configurations and apply necessary updates to mitigate possible exploitation.
Affected Version(s)
Red Hat Ansible Automation Platform 2.5 1784035663
Red Hat Ansible Automation Platform 2.5 1784051694
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved