- EPSS 0.39%
- Veröffentlicht 19.03.2021 21:15:11
- Zuletzt bearbeitet 21.11.2024 04:18:38
A flaw was discovered in OpenShift Container Platform 4 where, by default, users with access to create pods also have the ability to schedule workloads on master nodes. Pods with permission to access the host network, running on master nodes, can ret...
CVE-2019-10225
- EPSS 0.15%
- Veröffentlicht 19.03.2021 21:15:11
- Zuletzt bearbeitet 21.11.2024 04:18:41
A flaw was found in atomic-openshift of openshift-4.2 where the basic-user RABC role in OpenShift Container Platform doesn't sufficiently protect the GlusterFS StorageClass against leaking of the restuserkey. An attacker with basic-user permissions i...
CVE-2020-27827
- EPSS 0.42%
- Veröffentlicht 18.03.2021 17:15:13
- Zuletzt bearbeitet 03.12.2025 19:15:51
A flaw was found in multiple versions of OpenvSwitch. Specially crafted LLDP packets can cause memory to be lost when allocating data to handle specific optional TLVs, potentially causing a denial of service. The highest threat from this vulnerabilit...
CVE-2021-3344
- EPSS 0.68%
- Veröffentlicht 16.03.2021 22:15:11
- Zuletzt bearbeitet 21.11.2024 06:21:20
A privilege escalation flaw was found in OpenShift builder. During build time, credentials outside the build context are automatically mounted into the container image under construction. An OpenShift user, able to execute code during build time insi...
CVE-2021-20218
- EPSS 0.59%
- Veröffentlicht 16.03.2021 21:15:10
- Zuletzt bearbeitet 21.11.2024 05:46:09
A flaw was found in the fabric8 kubernetes-client in version 4.2.0 and after. This flaw allows a malicious pod/container to cause applications using the fabric8 kubernetes-client `copy` command to extract files outside the working path. The highest t...
CVE-2020-25639
- EPSS 0.12%
- Veröffentlicht 04.03.2021 22:15:13
- Zuletzt bearbeitet 21.11.2024 05:18:18
A NULL pointer dereference flaw was found in the Linux kernel's GPU Nouveau driver functionality in versions prior to 5.12-rc1 in the way the user calls ioctl DRM_IOCTL_NOUVEAU_CHANNEL_ALLOC. This flaw allows a local user to crash the system.
CVE-2021-20194
- EPSS 0.05%
- Veröffentlicht 23.02.2021 23:15:13
- Zuletzt bearbeitet 21.11.2024 05:46:06
There is a vulnerability in the linux kernel versions higher than 5.2 (if kernel compiled with config params CONFIG_BPF_SYSCALL=y , CONFIG_BPF=y , CONFIG_CGROUPS=y , CONFIG_CGROUP_BPF=y , CONFIG_HARDENED_USERCOPY not set, and BPF hook to getsockopt i...
CVE-2021-20182
- EPSS 0.53%
- Veröffentlicht 23.02.2021 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:46:05
A privilege escalation flaw was found in openshift4/ose-docker-builder. The build container runs with high privileges using a chrooted environment instead of runc. If an attacker can gain access to this build container, they can potentially utilize t...
- EPSS 0.09%
- Veröffentlicht 11.02.2021 18:15:16
- Zuletzt bearbeitet 21.11.2024 05:46:05
A flaw was found in podman before 1.7.0. File permissions for non-root users running in a privileged container are not correctly checked. This flaw can be abused by a low-privileged user inside the container to access any other file in the container,...
- EPSS 7.54%
- Veröffentlicht 21.12.2020 16:15:13
- Zuletzt bearbeitet 21.11.2024 05:21:55
A signature verification vulnerability exists in crewjam/saml. This flaw allows an attacker to bypass SAML Authentication. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.