Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-5408

Опубликовано: 04 окт. 2023
Источник: redhat
CVSS3: 7.2
EPSS Низкий

Описание

A privilege escalation flaw was found in the node restriction admission plugin of the kubernetes api server of OpenShift. A remote attacker who modifies the node role label could steer workloads from the control plane and etcd nodes onto different worker nodes and gain broader access to the cluster.

Отчет

In order to exploit this flaw, an attacker must already have root access on a workload node.

Дополнительная информация

Статус:

Important
Дефект:
CWE-269
https://bugzilla.redhat.com/show_bug.cgi?id=2242173OpenShift: modification of node role labels

EPSS

Процентиль: 66%
0.0052
Низкий

7.2 High

CVSS3

Связанные уязвимости

CVSS3: 7.2
nvd
больше 2 лет назад

A privilege escalation flaw was found in the node restriction admission plugin of the kubernetes api server of OpenShift. A remote attacker who modifies the node role label could steer workloads from the control plane and etcd nodes onto different worker nodes and gain broader access to the cluster.

CVSS3: 7.2
msrc
больше 2 лет назад

Описание отсутствует

CVSS3: 8.2
github
больше 2 лет назад

A privilege escalation flaw was found in the node restriction admission plugin of the kubernetes api server of OpenShift. A remote attacker who modifies the node role label could steer workloads from the control plane and etcd nodes onto different worker nodes and gain broader access to the cluster.

CVSS3: 8.2
fstec
больше 2 лет назад

Уязвимость компонента Node Role Label Handler прикладного программного интерфейса корпоративной платформы Red Hat OpenShift Container Platform, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 66%
0.0052
Низкий

7.2 High

CVSS3