Critical CVE-2026-11332 Affects Fedora Ansible-Core Versions

Critical CVE-2026-11332 Affects Fedora Ansible-Core Versions

First seen 20 Jun 2026, 06:23 UTC Linuxsecurity 91% similarity 75.8

Article Content

Browse articles
ThreatCluster

CVE-2026-11332, published on 2026-06-05, exposes a vulnerability in Ansible-Core that allows for argument injection during role installations, potentially leading to arbitrary code execution. This flaw affects Fedora 43 and 44 versions, specifically with updates released on 2026-06-11. The updates for Fedora 44 (2.20.7~rc1-1) and Fedora 43 (2.18.18~rc1-1) mitigate this vulnerability. Users are advised to upgrade their systems using the 'dnf' update program to avoid exploitation. The vulnerability has been confirmed and is categorized as critical due to its potential impact on system security. Immediate action is recommended for users running affected versions to apply the necessary updates.

Key Points: • CVE-2026-11332 allows arbitrary code execution via argument injection in Ansible-Core. • Fedora 43 and 44 are affected, with updates released on June 11, 2026. • Users must apply updates using 'dnf' to mitigate the critical vulnerability.

ThreatCluster AI How this analysis works

Timeline

2026-06-05
CVE-2026-11332 published
CVE-2026-11332 disclosed, detailing an argument injection vulnerability in Ansible-Core.
Linuxsecurity
2026-06-11
Fedora 44 update released
Fedora 44 released an update (2.20.7~rc1-1) to mitigate CVE-2026-11332, addressing the vulnerability.
Linuxsecurity
2026-06-11
Fedora 43 update released
Fedora 43 released an update (2.18.18~rc1-1) to mitigate CVE-2026-11332, addressing the vulnerability.
Linuxsecurity

Community

Browse all →

Tracked Entities in This Story