RHSA-2021:0383MediumCVSS 6.5
Red Hat Security Advisory: RHV-M (ovirt-engine) 4.4.z security, bug fix, enhancement upd[ovirt-4.4.4] 0-day
🔗 CVE IDs covered (1)
📋 Description
CVE-2020-35497 — ovirt-engine: non-admin user is able to access other users public SSH key
🔗 References (7)
- selfhttps://access.redhat.com/errata/RHSA-2021:0383
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1576923
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1894454
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1908643
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1908755
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2021/rhsa-2021_0383.json