CVE-2022-1798

A path traversal vulnerability in KubeVirt versions up to 0.56 (and 0.55.1) on all platforms allows a user able to configure the kubevirt to read arbitrary files on the host filesystem which are publicly readable or which are readable for UID 107 or GID 107. /proc/self/<> is not accessible.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.7 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 31%
Affected Products (NVD)
VendorProductVersion
kubevirtkubevirt
0.20.0 ≤
𝑥
< 0.55.1
𝑥
= Vulnerable software versions
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
kubevirt-manifests
suse enterprise sap 15 SP3
0.49.0-150300.8.13.1
fixed
suse enterprise sap 15 SP4
0.54.0-150400.3.3.2
fixed
suse enterprise sap 15 SP5
0.58.0-150500.6.3
fixed
suse enterprise sap 15 SP6
1.1.1-150600.3.6
fixed
suse enterprise sap 15 SP7
1.5.0-150700.1.3
fixed
suse enterprise server 15 SP3
0.49.0-150300.8.13.1
fixed
suse enterprise server 15 SP4
0.54.0-150400.3.3.2
fixed
suse enterprise server 15 SP5
0.58.0-150500.6.3
fixed
suse enterprise server 15 SP6
1.1.1-150600.3.6
fixed
suse enterprise server 15 SP7
1.5.0-150700.1.3
fixed
kubevirt-virtctl
suse enterprise sap 15 SP3
0.49.0-150300.8.13.1
fixed
suse enterprise sap 15 SP4
0.54.0-150400.3.3.2
fixed
suse enterprise sap 15 SP5
0.58.0-150500.6.3
fixed
suse enterprise sap 15 SP6
1.1.1-150600.3.6
fixed
suse enterprise sap 15 SP7
1.5.0-150700.1.3
fixed
suse enterprise server 15 SP3
0.49.0-150300.8.13.1
fixed
suse enterprise server 15 SP4
0.54.0-150400.3.3.2
fixed
suse enterprise server 15 SP5
0.58.0-150500.6.3
fixed
suse enterprise server 15 SP6
1.1.1-150600.3.6
fixed
suse enterprise server 15 SP7
1.5.0-150700.1.3
fixed