CVE-2015-5160
published 2018-08-20CVE-2015-5160: libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive…
PriorityP422medium5.5CVSS 3.0
AVLACLPRLUINSUCHINAN
EPSS
0.41%
33.2th percentile
libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.
Affected
25 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libvirt | < libvirt 2.2.0-1 (bookworm) | libvirt 2.2.0-1 (bookworm) |
| libvirt | libvirt | < 2.2 | 2.2 |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_eus | — | — |
| redhat | enterprise_linux_eus | — | — |
| redhat | enterprise_linux_eus | — | — |
| redhat | enterprise_linux_eus | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_aus | — | — |
| redhat | enterprise_linux_server_eus | — | — |
| redhat | enterprise_linux_server_eus | — | — |
| redhat | enterprise_linux_server_eus | — | — |
| redhat | enterprise_linux_server_eus | — | — |
| redhat | enterprise_linux_server_tus | — | — |
| redhat | enterprise_linux_server_tus | — | — |
| redhat | enterprise_linux_workstation | — | — |
| redhat | libvirt | >= 0 < 2.2.0-1 | 2.2.0-1 |
| redhat | libvirt | >= 0 < 2.2.0-1 | 2.2.0-1 |
| redhat | libvirt | >= 0 < 2.2.0-1 | 2.2.0-1 |
| redhat | libvirt | >= 0 < 2.2.0-1 | 2.2.0-1 |
| redhat | virtualization | — | — |
CVSS provenance
nvdv3.05.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
osv5.5MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-57w8-4258-hhvg: libvirt before 2
ghsa_unreviewed·2022-05-13
CVE-2015-5160 [MEDIUM] CWE-200 GHSA-57w8-4258-hhvg: libvirt before 2
libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.
OSV
CVE-2015-5160: libvirt before 2
osv·2018-08-20·CVSS 5.5
CVE-2015-5160 [MEDIUM] CVE-2015-5160: libvirt before 2
libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.
Red Hat
libvirt: Ceph id/key leaked in the process list
vendor_redhat·2015-08-10·CVSS 5.5
CVE-2015-5160 [MEDIUM] libvirt: Ceph id/key leaked in the process list
libvirt: Ceph id/key leaked in the process list
libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.
It was found that the libvirt daemon, when using RBD (RADOS Block Device), leaked private credentials to the process list. A local attacker could use this flaw to perform certain privileged operations within the cluster.
Statement: Red Hat Product Security has rated this issue as having Moderate security
impact. This issue is not currently planned to be addressed in future
updates of Enterprise Linux 6. For additional information, refer to
the Issue Severity Classification:
https://access.redhat.com/security/updates/classification/.
Package: libvirt (
Debian
CVE-2015-5160: libvirt - libvirt before 2.2 includes Ceph credentials on the qemu command line when using...
vendor_debian·2015·CVSS 5.5
CVE-2015-5160 [MEDIUM] CVE-2015-5160: libvirt - libvirt before 2.2 includes Ceph credentials on the qemu command line when using...
libvirt before 2.2 includes Ceph credentials on the qemu command line when using RADOS Block Device (aka RBD), which allows local users to obtain sensitive information via a process listing.
Scope: local
bookworm: resolved (fixed in 2.2.0-1)
bullseye: resolved (fixed in 2.2.0-1)
forky: resolved (fixed in 2.2.0-1)
sid: resolved (fixed in 2.2.0-1)
trixie: resolved (fixed in 2.2.0-1)
No detection rules found.
No public exploits indexed.
http://rhn.redhat.com/errata/RHSA-2016-2577.htmlhttp://www.openwall.com/lists/oss-security/2017/07/21/3https://bugs.launchpad.net/ossn/+bug/1686743https://bugzilla.redhat.com/show_bug.cgi?id=1245647https://wiki.openstack.org/wiki/OSSN/OSSN-0079http://rhn.redhat.com/errata/RHSA-2016-2577.htmlhttp://www.openwall.com/lists/oss-security/2017/07/21/3https://bugs.launchpad.net/ossn/+bug/1686743https://bugzilla.redhat.com/show_bug.cgi?id=1245647https://wiki.openstack.org/wiki/OSSN/OSSN-0079
2018-08-20
Published