Vulnerability Details CVE-2019-3831
A vulnerability was discovered in vdsm, version 4.19 through 4.30.3 and 4.30.5 through 4.30.8. The systemd_run function exposed to the vdsm system user could be abused to execute arbitrary commands as root.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.7%
CVSS Severity
CVSS v3 Score 6.4
CVSS v2 Score 9.0
Products affected by CVE-2019-3831
-
cpe:2.3:a:ovirt:vdsm:4.19
-
cpe:2.3:a:ovirt:vdsm:4.19.1
-
cpe:2.3:a:ovirt:vdsm:4.19.10
-
cpe:2.3:a:ovirt:vdsm:4.19.10.1
-
cpe:2.3:a:ovirt:vdsm:4.19.11
-
cpe:2.3:a:ovirt:vdsm:4.19.12
-
cpe:2.3:a:ovirt:vdsm:4.19.13
-
cpe:2.3:a:ovirt:vdsm:4.19.14
-
cpe:2.3:a:ovirt:vdsm:4.19.15
-
cpe:2.3:a:ovirt:vdsm:4.19.16
-
cpe:2.3:a:ovirt:vdsm:4.19.17
-
cpe:2.3:a:ovirt:vdsm:4.19.18
-
cpe:2.3:a:ovirt:vdsm:4.19.19
-
cpe:2.3:a:ovirt:vdsm:4.19.2
-
cpe:2.3:a:ovirt:vdsm:4.19.20
-
cpe:2.3:a:ovirt:vdsm:4.19.21
-
cpe:2.3:a:ovirt:vdsm:4.19.22
-
cpe:2.3:a:ovirt:vdsm:4.19.23
-
cpe:2.3:a:ovirt:vdsm:4.19.24
-
cpe:2.3:a:ovirt:vdsm:4.19.25
-
cpe:2.3:a:ovirt:vdsm:4.19.26
-
cpe:2.3:a:ovirt:vdsm:4.19.27
-
cpe:2.3:a:ovirt:vdsm:4.19.28
-
cpe:2.3:a:ovirt:vdsm:4.19.29
-
cpe:2.3:a:ovirt:vdsm:4.19.3
-
cpe:2.3:a:ovirt:vdsm:4.19.30
-
cpe:2.3:a:ovirt:vdsm:4.19.31
-
cpe:2.3:a:ovirt:vdsm:4.19.32
-
cpe:2.3:a:ovirt:vdsm:4.19.33
-
cpe:2.3:a:ovirt:vdsm:4.19.34
-
cpe:2.3:a:ovirt:vdsm:4.19.35
-
cpe:2.3:a:ovirt:vdsm:4.19.36
-
cpe:2.3:a:ovirt:vdsm:4.19.37
-
cpe:2.3:a:ovirt:vdsm:4.19.38
-
cpe:2.3:a:ovirt:vdsm:4.19.39
-
cpe:2.3:a:ovirt:vdsm:4.19.4
-
cpe:2.3:a:ovirt:vdsm:4.19.40
-
cpe:2.3:a:ovirt:vdsm:4.19.41
-
cpe:2.3:a:ovirt:vdsm:4.19.42
-
cpe:2.3:a:ovirt:vdsm:4.19.43
-
cpe:2.3:a:ovirt:vdsm:4.19.44
-
cpe:2.3:a:ovirt:vdsm:4.19.45
-
cpe:2.3:a:ovirt:vdsm:4.19.46
-
cpe:2.3:a:ovirt:vdsm:4.19.47
-
cpe:2.3:a:ovirt:vdsm:4.19.48
-
cpe:2.3:a:ovirt:vdsm:4.19.49
-
cpe:2.3:a:ovirt:vdsm:4.19.5
-
cpe:2.3:a:ovirt:vdsm:4.19.50
-
cpe:2.3:a:ovirt:vdsm:4.19.51
-
cpe:2.3:a:ovirt:vdsm:4.19.6
-
cpe:2.3:a:ovirt:vdsm:4.19.7
-
cpe:2.3:a:ovirt:vdsm:4.19.8
-
cpe:2.3:a:ovirt:vdsm:4.19.9
-
cpe:2.3:a:ovirt:vdsm:4.20.0
-
cpe:2.3:a:ovirt:vdsm:4.20.1
-
cpe:2.3:a:ovirt:vdsm:4.20.10
-
cpe:2.3:a:ovirt:vdsm:4.20.11
-
cpe:2.3:a:ovirt:vdsm:4.20.12
-
cpe:2.3:a:ovirt:vdsm:4.20.13
-
cpe:2.3:a:ovirt:vdsm:4.20.14
-
cpe:2.3:a:ovirt:vdsm:4.20.15
-
cpe:2.3:a:ovirt:vdsm:4.20.16
-
cpe:2.3:a:ovirt:vdsm:4.20.17
-
cpe:2.3:a:ovirt:vdsm:4.20.18
-
cpe:2.3:a:ovirt:vdsm:4.20.19
-
cpe:2.3:a:ovirt:vdsm:4.20.2
-
cpe:2.3:a:ovirt:vdsm:4.20.20
-
cpe:2.3:a:ovirt:vdsm:4.20.21
-
cpe:2.3:a:ovirt:vdsm:4.20.22
-
cpe:2.3:a:ovirt:vdsm:4.20.23
-
cpe:2.3:a:ovirt:vdsm:4.20.24
-
cpe:2.3:a:ovirt:vdsm:4.20.25
-
cpe:2.3:a:ovirt:vdsm:4.20.26
-
cpe:2.3:a:ovirt:vdsm:4.20.27
-
cpe:2.3:a:ovirt:vdsm:4.20.27.1
-
cpe:2.3:a:ovirt:vdsm:4.20.28
-
cpe:2.3:a:ovirt:vdsm:4.20.29
-
cpe:2.3:a:ovirt:vdsm:4.20.3
-
cpe:2.3:a:ovirt:vdsm:4.20.30
-
cpe:2.3:a:ovirt:vdsm:4.20.31
-
cpe:2.3:a:ovirt:vdsm:4.20.32
-
cpe:2.3:a:ovirt:vdsm:4.20.33
-
cpe:2.3:a:ovirt:vdsm:4.20.34
-
cpe:2.3:a:ovirt:vdsm:4.20.35
-
cpe:2.3:a:ovirt:vdsm:4.20.36
-
cpe:2.3:a:ovirt:vdsm:4.20.37
-
cpe:2.3:a:ovirt:vdsm:4.20.38
-
cpe:2.3:a:ovirt:vdsm:4.20.39
-
cpe:2.3:a:ovirt:vdsm:4.20.39.1
-
cpe:2.3:a:ovirt:vdsm:4.20.4
-
cpe:2.3:a:ovirt:vdsm:4.20.40
-
cpe:2.3:a:ovirt:vdsm:4.20.41
-
cpe:2.3:a:ovirt:vdsm:4.20.42
-
cpe:2.3:a:ovirt:vdsm:4.20.43
-
cpe:2.3:a:ovirt:vdsm:4.20.44
-
cpe:2.3:a:ovirt:vdsm:4.20.45
-
cpe:2.3:a:ovirt:vdsm:4.20.46
-
cpe:2.3:a:ovirt:vdsm:4.20.47
-
cpe:2.3:a:ovirt:vdsm:4.20.5
-
cpe:2.3:a:ovirt:vdsm:4.20.6
-
cpe:2.3:a:ovirt:vdsm:4.20.7
-
cpe:2.3:a:ovirt:vdsm:4.20.8
-
cpe:2.3:a:ovirt:vdsm:4.20.9
-
cpe:2.3:a:ovirt:vdsm:4.20.9.1
-
cpe:2.3:a:ovirt:vdsm:4.20.9.2
-
cpe:2.3:a:ovirt:vdsm:4.20.9.3
-
cpe:2.3:a:ovirt:vdsm:4.30.1
-
cpe:2.3:a:ovirt:vdsm:4.30.2
-
cpe:2.3:a:ovirt:vdsm:4.30.3
-
cpe:2.3:a:ovirt:vdsm:4.30.5
-
cpe:2.3:a:ovirt:vdsm:4.30.6
-
cpe:2.3:a:ovirt:vdsm:4.30.7
-
cpe:2.3:a:ovirt:vdsm:4.30.8
-
cpe:2.3:a:redhat:gluster_storage:3.0