Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-9779

Опубликовано: 30 нояб. 2023
Источник: redhat
CVSS3: 7.5

Описание

A flaw was found in Open Cluster Management (OCM) when a user has access to the worker nodes which contain the cluster-manager or klusterlet deployments. The cluster-manager deployment uses a service account with the same name "cluster-manager" which is bound to a ClusterRole also named "cluster-manager", which includes the permission to create Pod resources. If this deployment runs a pod on an attacker-controlled node, the attacker can obtain the cluster-manager's token and steal any service account token by creating and mounting the target service account to control the whole cluster.

Отчет

This flaw affects upstream Open Cluster Management version 0.12.0 and was fixed in 0.13.0. No supported versions of Red Hat Advanced Cluster Management are affected.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Advanced Cluster Management for Kubernetes 2open-cluster-managementNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-268->CWE-501
https://bugzilla.redhat.com/show_bug.cgi?id=2317916open-cluster-management-io/ocm: cluster-manager permissions may allow a worker node to obtain service account tokens

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
около 1 года назад

A flaw was found in Open Cluster Management (OCM) when a user has access to the worker nodes which contain the cluster-manager or klusterlet deployments. The cluster-manager deployment uses a service account with the same name "cluster-manager" which is bound to a ClusterRole also named "cluster-manager", which includes the permission to create Pod resources. If this deployment runs a pod on an attacker-controlled node, the attacker can obtain the cluster-manager's token and steal any service account token by creating and mounting the target service account to control the whole cluster.

CVSS3: 7.5
github
около 1 года назад

Open Cluster Management vulnerable to Trust Boundary Violation

suse-cvrf
12 месяцев назад

Security update for govulncheck-vulndb

7.5 High

CVSS3