{ "schema_version": "1.4.0", "id": "GHSA-7pfq-gm79-4p7f", "modified": "2025-04-11T04:10:41Z", "published": "2022-05-14T01:52:00Z", "aliases": [ "CVE-2013-2069" ], "details": "Red Hat livecd-tools before 13.4.4, 17.x before 17.17, 18.x before 18.16, and 19.x before 19.3, when a rootpw directive is not set in a Kickstart file, sets the root user password to empty, which allows local users to gain privileges.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-2069" }, { "type": "WEB", "url": "https://aws.amazon.com/security/security-bulletins/red-hat-and-other-third-party-public-amis-security-concern" }, { "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=964299" }, { "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84488" }, { "type": "WEB", "url": "http://rhn.redhat.com/errata/RHSA-2013-0849.html" }, { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2013/05/23/2" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/60119" } ], "database_specific": { "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2013-05-29T00:55:00Z" } }