blob: 448eac5f2d2c7fbf03e29c979eb5b0f57bdaafc9 [file] [log] [blame]
id: GO-2022-1000
modules:
- module: kubevirt.io/kubevirt
versions:
- introduced: 0.20.0
- fixed: 0.55.1
vulnerable_at: 0.55.0
summary: KubeVirt vulnerable to arbitrary file read on host in kubevirt.io/kubevirt
ghsas:
- GHSA-qv98-3369-g364
references:
- advisory: https://github.com/kubevirt/kubevirt/security/advisories/GHSA-qv98-3369-g364
- web: https://github.com/google/security-research/security/advisories/GHSA-cvx8-ppmc-78hm
- web: https://github.com/kubevirt/kubevirt/pull/8198
- web: https://github.com/kubevirt/kubevirt/pull/8268
source:
id: GHSA-qv98-3369-g364
created: 2024-08-20T14:45:28.107913-04:00
review_status: UNREVIEWED
unexcluded: EFFECTIVELY_PRIVATE