Libosinfo is a specialized library that provides operating-system metadata and information to virtualization and systems-management tools, with a narrow product scope focused on the core library itself. Observed vulnerabilities in this project center on information-disclosure weaknesses where sensitive data—such as configuration details or system metadata—may be exposed to unauthorized consumers, a pattern consistent with the library's role in aggregating and distributing OS information across diverse virtualization platforms.
The number and severity of CVEs published that impact products developed by Libosinfo over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-13313HIGH libosinfo 1.5.0 allows local users to discover credentials by listing a process, because credentials are passed to osinfo-install-script via the command line. | Jul 5, 2019 | 7.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Libosinfo.
Media articles that mention a CVE ID that affects a product developed by Libosinfo — matched by CVE ID, not by vendor name.