Oval Definition:
oval:org.opensuse.security:def:20193781
Revision Date
:
2022-05-22
Version
:
1
Title
:
CVE-2019-3781
Description
:
Cloud Foundry CLI, versions prior to v6.43.0, improperly exposes passwords when verbose/trace/debugging is turned on. A local unauthenticated or remote authenticated malicious user with access to logs may gain part or all of a users password.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2019-3781
SUSE-SU-2019:1220-1
SUSE-SU-2019:1220-2
Mitre CVE-2019-3781
SUSE CVE-2019-3781
SUSE-SU-2019:1220-1
SUSE-SU-2019:1220-2
Platform(s)
:
openSUSE Leap 15.0
SUSE Linux Enterprise Module for CAP 15
SUSE Linux Enterprise Module for CAP 15 SP1
Product(s)
:
Definition Synopsis
SUSE Linux Enterprise Module for CAP 15 is installed
AND
cf-cli-6.43.0-3.3 is installed
Definition Synopsis
openSUSE Leap 15.0 is installed
AND
Package Information
cf-cli-6.43.0-lp150.2.3 is installed
AND
cf-cli is signed with openSUSE key
OR
cf-cli-test-6.43.0-lp150.2.3 is installed
AND
cf-cli-test is signed with openSUSE key
Definition Synopsis
Release Information
SUSE Linux Enterprise Module for CAP 15 is installed
OR
SUSE Linux Enterprise Module for CAP 15 SP1 is installed
AND
cf-cli-6.43.0-3.3.2 is installed
Definition Synopsis
SUSE Linux Enterprise Module for CAP 15 SP1 is installed
AND
cf-cli-6.43.0-3.3.2 is installed
BACK