Описание
libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.
Релиз | Статус | Примечание |
---|---|---|
artful | not-affected | 3.6.0-1ubuntu6 |
devel | not-affected | 3.6.0-1ubuntu6 |
esm-infra-legacy/trusty | ignored | |
esm-infra/xenial | ignored | |
precise | ignored | end of life |
precise/esm | ignored | |
trusty | ignored | |
trusty/esm | ignored | |
upstream | released | 2.2.0 |
vivid | ignored | end of life |
Показывать по
EPSS
2.1 Low
CVSS2
5.5 Medium
CVSS3
Связанные уязвимости
libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.
libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.
libvirt before 2.2 includes Ceph credentials on the qemu command line ...
libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.
ELSA-2016-2577: libvirt security, bug fix, and enhancement update (MODERATE)
EPSS
2.1 Low
CVSS2
5.5 Medium
CVSS3