Description
Red Hat livecd-tools before 13.4.4, 17.x before 17.17, 18.x before 18.16, and 19.x before 19.3, when a rootpw directive is not set in a Kickstart file, sets the root user password to empty, which allows local users to gain privileges.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2013-2049 | Red Hat livecd-tools before 13.4.4, 17.x before 17.17, 18.x before 18.16, and 19.x before 19.3, when a rootpw directive is not set in a Kickstart file, sets the root user password to empty, which allows local users to gain privileges. |
References
History
Fri, 16 May 2025 01:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat enterprise Linux
|
|
| CPEs | cpe:/o:redhat:enterprise_linux:6 | |
| Vendors & Products |
Redhat enterprise Linux Common
|
Redhat enterprise Linux
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T15:27:39.171Z
Reserved: 2013-02-19T00:00:00.000Z
Link: CVE-2013-2069
No data.
Status : Modified
Published: 2013-05-29T00:55:01.133
Modified: 2026-04-29T01:13:23.040
Link: CVE-2013-2069
OpenCVE Enrichment
No data.
EUVD