Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fpgq-qv2c-6787

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

A vulnerability exists in the garbage collection mechanism of atomic-openshift. An attacker able spoof the UUID of a valid object from another namespace is able to delete children of those objects. Versions 3.6, 3.7, 3.8, 3.9, 3.10, 3.11 and 4.1 are affected.

A vulnerability exists in the garbage collection mechanism of atomic-openshift. An attacker able spoof the UUID of a valid object from another namespace is able to delete children of those objects. Versions 3.6, 3.7, 3.8, 3.9, 3.10, 3.11 and 4.1 are affected.

EPSS

Процентиль: 30%
0.00111
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-287
CWE-290

Связанные уязвимости

CVSS3: 3.6
redhat
почти 7 лет назад

A vulnerability exists in the garbage collection mechanism of atomic-openshift. An attacker able spoof the UUID of a valid object from another namespace is able to delete children of those objects. Versions 3.6, 3.7, 3.8, 3.9, 3.10, 3.11 and 4.1 are affected.

CVSS3: 5.4
nvd
больше 6 лет назад

A vulnerability exists in the garbage collection mechanism of atomic-openshift. An attacker able spoof the UUID of a valid object from another namespace is able to delete children of those objects. Versions 3.6, 3.7, 3.8, 3.9, 3.10, 3.11 and 4.1 are affected.

EPSS

Процентиль: 30%
0.00111
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-287
CWE-290