|
|
Log in / Subscribe / Register

virt-who: information leak

Package(s):virt-who CVE #(s):CVE-2014-0189
Created:February 16, 2015 Updated:March 6, 2015
Description: From the CVE entry:

virt-who uses world-readable permissions for /etc/sysconfig/virt-who, which allows local users to obtain password for hypervisors by reading the file.

Alerts:
Scientific Linux SLSA-2015:0430-1 virt-who 2015-03-25
Red Hat RHSA-2015:0430-01 virt-who 2015-03-05
Fedora FEDORA-2015-1632 virt-who 2015-02-15

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds