Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-75924

Опубликовано: 18 авг. 2026
Источник: redhat
CVSS3: 8.7
EPSS Низкий

Описание

A flaw was found in managed-serviceaccount. A compromised addon-manager pod, due to its ClusterRole granting excessive permissions, can read any secret across all namespaces. Additionally, it can approve arbitrary Certificate Signing Requests (CSRs), which could lead to information disclosure and privilege escalation within the cluster.

Отчет

This vulnerability is rated Important as a compromised addon-manager pod in Red Hat Advanced Cluster Management for Kubernetes could gain extensive cluster-wide privileges. This includes the ability to read and modify any secret across all namespaces and approve arbitrary Certificate Signing Requests (CSRs), leading to significant unauthorized access and control within the cluster.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Multicluster Engine for Kubernetesmulticluster-engine/managed-serviceaccount-rhel9Not affected
Red Hat Advanced Cluster Management for Kubernetes 2rhacm2/acm-cluster-permission-rhel9Not affected
Red Hat Advanced Cluster Management for Kubernetes 2rhacm2/mtv-integrations-rhel9Not affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-269
https://bugzilla.redhat.com/show_bug.cgi?id=2515720managed-serviceaccount: managed-serviceaccount: Hub addon-manager ClusterRole grants cluster-wide Secret read/write and CSR approval

EPSS

Процентиль: 5%
0.00159
Низкий

8.7 High

CVSS3

Связанные уязвимости

CVSS3: 8.7
nvd
около 1 месяца назад

A flaw was found in managed-serviceaccount. A compromised addon-manager pod, due to its ClusterRole granting excessive permissions, can read any secret across all namespaces. Additionally, it can approve arbitrary Certificate Signing Requests (CSRs), which could lead to information disclosure and privilege escalation within the cluster.

CVSS3: 8.7
github
около 1 месяца назад

A flaw was found in managed-serviceaccount. A compromised addon-manager pod, due to its ClusterRole granting excessive permissions, can read any secret across all namespaces. Additionally, it can approve arbitrary Certificate Signing Requests (CSRs), which could lead to information disclosure and privilege escalation within the cluster.

EPSS

Процентиль: 5%
0.00159
Низкий

8.7 High

CVSS3