CVE-2014-0189
02.05.2014, 14:55
virt-who uses world-readable permissions for /etc/sysconfig/virt-who, which allows local users to obtain password for hypervisors by reading the file.Enginsight
| Vendor | Product | Version |
|---|---|---|
| redhat | enterprise_linux_desktop | 7.0 |
| redhat | enterprise_linux_server | 7.0 |
| redhat | enterprise_linux_workstation | 7.0 |
| virt-who_project | virt-who | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References