REDHAT-BUG-1930926: Medium severity red hat satellite with embedded oracle vulnerability
Published Feb 19, 2021
·Updated
A password leak was identified on Red Hat Satellite which will expose BMC password in plaintext through the compute host API.
Affected Software
1 affected component
Red Hat Satellite
Event History
Feb 19, 2021
Data Sourced
via Red Hat·07:41 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-1930926?
The severity of REDHAT-BUG-1930926 is considered high due to the potential exposure of sensitive credentials.
2
How do I fix REDHAT-BUG-1930926?
To fix REDHAT-BUG-1930926, update to the latest version of Red Hat Satellite that addresses the password leak.
3
What impact does REDHAT-BUG-1930926 have on my system?
REDHAT-BUG-1930926 can lead to unauthorized access to systems if BMC passwords are exploited.
4
Is my version of Red Hat Satellite affected by REDHAT-BUG-1930926?
If you are using Red Hat Satellite, you are likely affected by REDHAT-BUG-1930926 unless you have applied the relevant patches.
5
Can REDHAT-BUG-1930926 be exploited remotely?
Yes, REDHAT-BUG-1930926 can potentially be exploited remotely through the compute host API.