PT-2014-2113 · Red Hat · Virt-V2V+1

Published

2011-12-05

·

Updated

2019-04-22

·

CVE-2011-1773

CVSS v2.0

4.4

Medium

VectorAV:L/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions virt-v2v versions prior to 0.8.4
Description The issue allows local users to bypass the intended VNC authentication by connecting without a password, as the VNC console password is not preserved when converting a guest.
Recommendations For versions prior to 0.8.4, update to version 0.8.4 or later to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-1773
RHSA-2011:1615
RHSA-2011_1615

Affected Products

Red Hat
Virt-V2V