Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xrr8-23jx-fjvc

Опубликовано: 03 апр. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

An information disclosure flaw was found in OpenShift Virtualization. The DownwardMetrics feature was introduced to expose host metrics to virtual machine guests and is enabled by default. This issue could expose limited host metrics of a node to any guest in any namespace without being explicitly enabled by an administrator.

An information disclosure flaw was found in OpenShift Virtualization. The DownwardMetrics feature was introduced to expose host metrics to virtual machine guests and is enabled by default. This issue could expose limited host metrics of a node to any guest in any namespace without being explicitly enabled by an administrator.

EPSS

Процентиль: 35%
0.00142
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-497

Связанные уязвимости

CVSS3: 4.3
redhat
около 2 лет назад

An information disclosure flaw was found in OpenShift Virtualization. The DownwardMetrics feature was introduced to expose host metrics to virtual machine guests and is enabled by default. This issue could expose limited host metrics of a node to any guest in any namespace without being explicitly enabled by an administrator.

CVSS3: 4.3
nvd
около 2 лет назад

An information disclosure flaw was found in OpenShift Virtualization. The DownwardMetrics feature was introduced to expose host metrics to virtual machine guests and is enabled by default. This issue could expose limited host metrics of a node to any guest in any namespace without being explicitly enabled by an administrator.

EPSS

Процентиль: 35%
0.00142
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-497