RHSA-2022:8502MediumCVSS 6.5
Red Hat Security Advisory: RHV Manager (ovirt-engine) [ovirt-4.5.3] bug fix and security update
🔗 CVE IDs covered (2)
📋 Description
CVE-2022-0155 — follow-redirects: Exposure of Private Personal Information to an Unauthorized Actor CVE-2022-2805 — ovirt-engine: RHVM admin password is logged unfiltered when using otopi-style
🔗 References (16)
- selfhttps://access.redhat.com/errata/RHSA-2022:8502
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1705338
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1836318
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1886211
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1968433
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1974535
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1983567
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2044556
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2079545
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2118672
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2123141
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2127836
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2134549
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2137207
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_8502.json