It was found that the ovirt-log-collector/sosreport collects the RHV admin password unfiltered. Fixed in: sos-4.2-20.el8_6, ovirt-log-collector-4.4.7-2.el8ev
References
Link | Resource |
---|---|
https://github.com/sosreport/sos/pull/2947 | Patch Third Party Advisory |
Configurations
History
07 Sep 2022, 19:33
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
References | (MISC) https://github.com/sosreport/sos/pull/2947 - Patch, Third Party Advisory | |
CPE | cpe:2.3:a:ovirt:log_collector:*:*:*:*:*:*:*:* cpe:2.3:a:sos_project:sos:*:*:*:*:*:*:*:* |
02 Sep 2022, 12:56
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-09-01 21:15
Updated : 2024-02-04 22:51
NVD link : CVE-2022-2806
Mitre link : CVE-2022-2806
CVE.ORG link : CVE-2022-2806
JSON object : View
Products Affected
ovirt
- log_collector
sos_project
- sos
CWE