Description
It was found that the ovirt-log-collector/sosreport collects the RHV admin password unfiltered. Fixed in: sos-4.2-20.el8_6, ovirt-log-collector-4.4.7-2.el8ev
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-6735 | It was found that the ovirt-log-collector/sosreport collects the RHV admin password unfiltered. Fixed in: sos-4.2-20.el8_6, ovirt-log-collector-4.4.7-2.el8ev |
Github GHSA |
GHSA-7pf9-7cff-f854 | sosreport Exposure of Sensitive Information vulnerability |
Ubuntu USN |
USN-5636-1 | SoS vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-03T00:52:59.579Z
Reserved: 2022-08-12T00:00:00.000Z
Link: CVE-2022-2806
No data.
Status : Modified
Published: 2022-09-01T21:15:09.860
Modified: 2024-11-21T07:01:43.710
Link: CVE-2022-2806
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA
Ubuntu USN