vulnerability
CentOS Linux: CVE-2021-3620: Important: RHV Engine and Host Common Packages security update [ovirt-4.4.9] (CESA-2021:4703)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 2 | (AV:L/AC:L/Au:N/C:P/I:N/A:N) | Nov 16, 2021 | Nov 17, 2021 | May 25, 2023 |
Severity
2
CVSS
(AV:L/AC:L/Au:N/C:P/I:N/A:N)
Published
Nov 16, 2021
Added
Nov 17, 2021
Modified
May 25, 2023
Description
A flaw was found in Ansible Engine's ansible-connection module, where sensitive information such as the Ansible user credentials is disclosed by default in the traceback error message. The highest threat from this vulnerability is to confidentiality.
Solution
centos-upgrade-ovirt-ansible-collection
References
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.