CVE-2019-3831: Ovirt Vdsm

Medium severity, CVSS 6.7. EPSS: 1% chance of exploitation in the next 30 days.

A vulnerability was discovered in vdsm, version 4.19 through 4.30.3 and 4.30.5 through 4.30.8. The systemd_run function exposed to the vdsm system user could be abused to execute arbitrary commands as root.

Affected products

  • Ovirt Vdsm: from 4.19, up to and including 4.30.3; from 4.30.5, up to and including 4.30.8
  • Red Hat Gluster Storage: version 3.0 only

Published 2019-03-25. Last modified 2026-06-17.