← Back

CVE-2018-1069

nvd nist
Published: Mar 9, 2018Modified: Nov 21, 2024

JSON object

Loading...
7.1
Vector
CVSS:3.0/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.2 / Impact: 5.9
Source: NVD

Description

Red Hat OpenShift Enterprise version 3.7 is vulnerable to access control override for container network filesystems. An attacker could override the UserId and GroupId for GlusterFS and NFS to read and write any data on the network filesystem.

Affected (1)

Products: Redhat: Openshift
1 product
Openshift
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 3.7

References (4)

Source: secalert@redhat.com
Third Party AdvisoryVDB Entry
Source: secalert@redhat.com
Issue TrackingMitigation
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingMitigation

Timeline

No history available yet.