CVE-2019-3831

Source
https://nvd.nist.gov/vuln/detail/CVE-2019-3831
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-3831.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2019-3831
Related
Withdrawn
2024-05-15T05:31:34.831593Z
Published
2019-03-25T18:29:00Z
Modified
2023-11-29T07:29:34.869362Z
Severity
  • 6.7 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

A vulnerability was discovered in vdsm, version 4.19 through 4.30.3 and 4.30.5 through 4.30.8. The systemd_run function exposed to the vdsm system user could be abused to execute arbitrary commands as root.

References

Affected packages

Git / github.com/ovirt/vdsm

Affected ranges

Type
GIT
Repo
https://github.com/ovirt/vdsm
Events

Affected versions

4.*

4.19.49

v4.*

v4.19.49
v4.19.50
v4.19.51