VDB
CVE-2019-3831
CVE-2019-3831
PUBLISHED
CVSS 6.400000095367432 MEDIUM
A vulnerability was discovered in vdsm, version 4.19 through 4.30.3 and 4.30.5 through 4.30.8. The systemd_run function exposed to the vdsm system user could be abused to execute arbitrary commands as root.
EPSS 1.03% · 60.4th percentile
Risk Scores
CVSS 3.0
6.400000095367432
CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS Score
1.03%
60.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| redhat | gluster_storage | 3.0 |
| ovirt | vdsm | 4.19, 4.30.5 |
| [UNKNOWN] | vdsm | 4.30.9 |
Timeline
- Mar 25, 2019 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Dec 27, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 28, 2022 EPSS Score
- May 2, 2022 EPSS Score
- May 13, 2022 CVE Updated
- Jul 3, 2022 EPSS Score
- Sep 5, 2022 EPSS Score