Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gf93-xccm-5g6j

Опубликовано: 04 нояб. 2025
Источник: github
Github: Прошло ревью
CVSS4: 8.7

Описание

MARIN3R: Cross-Namespace Vulnerability in the Operator

Summary

Cross-namespace Secret access vulnerability in DiscoveryServiceCertificate allows users to bypass RBAC and access Secrets in unauthorized namespaces.

Affected Versions

All versions prior to v0.13.4

Patched Versions

v0.13.4 and later

Impact

Users with permission to create DiscoveryServiceCertificate resources in one namespace can indirectly read Secrets from other namespaces, completely bypassing Kubernetes RBAC security boundaries.

Workarounds

Restrict DiscoveryServiceCertificate create permissions to cluster administrators only until patched version is deployed.

Credit

Thanks to @debuggerchen for the responsible disclosure.

Пакеты

Наименование

github.com/3scale-sre/marin3r

go
Затронутые версииВерсия исправления

<= 0.13.3

0.13.4

EPSS

Процентиль: 10%
0.00035
Низкий

8.7 High

CVSS4

Дефекты

CWE-862

Связанные уязвимости

nvd
3 месяца назад

MARIN3R is a lightweight, CRD based envoy control plane for kubernetes. In versions 0.13.3 and below, there is a cross-namespace secret access vulnerability in the project's DiscoveryServiceCertificate which allows users to bypass RBAC and access secrets in unauthorized namespaces. This issue is fixed in version 0.13.4.

EPSS

Процентиль: 10%
0.00035
Низкий

8.7 High

CVSS4

Дефекты

CWE-862