Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Path Traversal vulnerability in Kubevirt
Vulnerability Description
A path traversal vulnerability in KubeVirt versions up to 0.56 (and 0.55.1) on all platforms allows a user able to configure the kubevirt to read arbitrary files on the host filesystem which are publicly readable or which are readable for UID 107 or GID 107. /proc/self/<> is not accessible.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:H
Vulnerability Type
输入验证不恰当
Vulnerability Title
Red Hat OpenShift 路径遍历漏洞
Vulnerability Description
Red Hat OpenShift是美国红帽(Red Hat)公司的一款平台即服务(PaaS)云计算平台,它支持构建、测试、部署和运行应用程序。 OpenShift Virtualization 4.10.5 images: RHEL-8-CNV-4.10版本存在安全漏洞,攻击者利用该漏洞可以从 KubeVirt 虚拟机在主机上读取的任意文件。
CVSS Information
N/A
Vulnerability Type
N/A