A race condition was found in vdsm. Functionality to obfuscate sensitive values in log files that may lead to values being stored in clear text.
References
Link | Resource |
---|---|
https://access.redhat.com/security/cve/CVE-2022-0207 | Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=2039248 | Issue Tracking Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=2033697 | Issue Tracking Patch Third Party Advisory |
https://gerrit.ovirt.org/c/vdsm/+/118025 | Patch Vendor Advisory |
https://gerrit.ovirt.org/gitweb?p=vdsm.git%3Ba=commit%3Bh=53b0036fc72d3b8877d4e7f047d705e5a4c722e8 |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
AND |
|
Information
Published : 2022-08-26 11:15
Updated : 2023-02-12 14:15
NVD link : CVE-2022-0207
Mitre link : CVE-2022-0207
JSON object : View
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Products Affected
redhat
- enterprise_linux
- virtualization
- virtualization_for_ibm_power_little_endian
- virtualization_host
ovirt
- vdsm