Red Hat Bugzilla – Bug 911699
CVE-2013-0293 rhev: rhev-h: Lock screen accepts F2 to drop to shell
Last modified: 2015-08-24 11:57:42 EDT
F2 on the lock screen will cause the UI to drop to a root shell. This means the screen is not really locked and an unprivileged user that has access to the console or the ssh session can elevate his privileges. Acknowledgements: This issue was discovered by Mike Burns of Red Hat.
Statement: Not vulnerable. This issue did not affect Red Hat Enterprise Virtualization Hypervisor 5 and 6.