Описание
Windows workloads can run as ContainerAdministrator even when those workloads set the runAsNonRoot option to true.
A flaw was found in Kubernetes. This issue allows Windows workloads to run as a ContainerAdministrator even when the workloads set the runAsNonRoot option to true.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat OpenShift Container Platform 3.11 | atomic-openshift | Out of support scope | ||
| Red Hat OpenShift Container Platform 4 | openshift4/ose-tests | Fix deferred | ||
| Red Hat OpenShift Container Platform 4.12 | openshift4-wincw/windows-machine-config-rhel8-operator | Fixed | RHSA-2022:9096 | 30.01.2023 |
Показывать по
10
Дополнительная информация
Статус:
Low
Дефект:
CWE-842
https://bugzilla.redhat.com/show_bug.cgi?id=2127808kubelet: runAsNonRoot logic bypass for Windows containers
EPSS
Процентиль: 10%
0.00036
Низкий
3.8 Low
CVSS3
Связанные уязвимости
CVSS3: 7.8
nvd
больше 2 лет назад
Windows workloads can run as ContainerAdministrator even when those workloads set the runAsNonRoot option to true.
CVSS3: 7.8
debian
больше 2 лет назад
Windows workloads can run as ContainerAdministrator even when those wo ...
CVSS3: 7.8
github
больше 2 лет назад
Windows workloads can run as ContainerAdministrator even when those workloads set the runAsNonRoot option to true.
EPSS
Процентиль: 10%
0.00036
Низкий
3.8 Low
CVSS3