CVE-2019-13314: Red Hat Virt-Bootstrap

High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.

virt-bootstrap 1.1.0 allows local users to discover a root password by listing a process, because this password may be present in the --root-password option to virt_bootstrap.py.

Affected products

  • Red Hat Virt-Bootstrap: version 1.1.0 only

Published 2019-07-05. Last modified 2026-06-17.