CVE-2014-0189
EUVD-2014-024102.05.2014, 14:55
virt-who uses world-readable permissions for /etc/sysconfig/virt-who, which allows local users to obtain password for hypervisors by reading the file.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| redhat | enterprise_linux_desktop | 7.0 |
| redhat | enterprise_linux_server | 7.0 |
| redhat | enterprise_linux_workstation | 7.0 |
| virt-who_project | virt-who | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References