High severity7.5NVD Advisory· Published Feb 25, 2020· Updated Jun 17, 2026
CVE-2015-5201
CVE-2015-5201
Description
VDSM and libvirt in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H) 7-7.x before 7-7.2-20151119.0 and 6-6.x before 6-6.7-20151117.0 as packaged in Red Hat Enterprise Virtualization before 3.5.6 when VSDM is run with -spice disable-ticketing and a VM is suspended and then restored, allows remote attackers to log in without authentication via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:redhat:enterprise_virtualization:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:redhat:enterprise_virtualization:*:*:*:*:*:*:*:*range: <3.5.6
- cpe:2.3:a:redhat:enterprise_virtualization_hypervisor:*:*:*:*:*:*:*:*range: >=6-6.0,<6-6.7-20151117.0
- (no CPE)range: 7-7.x before 7-7.2-20151119.0 and 6-6.x before 6-6.7-20151117.0
- Range: < 7-7.2-20151119.0, < 6-6.7-20151117.0
Patches
Vulnerability mechanics
References
4- access.redhat.com/security/cve/cve-2015-5201nvdVendor Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingVendor Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingVendor Advisory
- rhn.redhat.com/errata/RHEA-2015-2527.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.