CVE-2022-44020
30.10.2022, 00:15
An issue was discovered in OpenStack Sushy-Tools through 0.21.0 and VirtualBMC through 2.2.2. Changing the boot device configuration with these packages removes password protection from the managed libvirt XML domain. NOTE: this only affects an "unsupported, production-like configuration."Enginsight
Vendor | Product | Version |
---|---|---|
opendev | sushy-tools | 𝑥 < 0.21.1 |
opendev | virtualbmc | 𝑥 < 3.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References