VDB
BDU%3A2023-06344
BDU%3A2023-06344
PUBLISHED
CVSS 7.199999809265137 HIGH
Уязвимость компонента Node Role Label Handler прикладного программного интерфейса корпоративной платформы Red Hat OpenShift Container Platform, позволяющая нарушителю повысить свои привилегии
Risk Scores
CVSS 3.1
7.199999809265137
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | Red Hat OpenShift Container Platform 4.12 | v4.12.0-202311021630.p0.gfe5e2a1.assembly.stream |
| Red Hat Inc. | Red Hat OpenShift Container Platform | |
| Red Hat | Red Hat OpenShift Container Platform 4.11 | v4.11.0-202311211130.p0.g7021090.assembly.stream |
| Red Hat | Red Hat OpenShift Container Platform 4.14 | v4.14.0-202310201027.p0.g8b38d12.assembly.stream |
| Red Hat | Red Hat OpenShift Container Platform 4.13 | v4.13.0-202310210425.p0.gd525f5d.assembly.stream |
Timeline
- Oct 6, 2023 CVE Published
- Nov 2, 2023 PoC Published
- May 29, 2026 Distribution Patch
- May 29, 2026 Distribution Patch
- May 29, 2026 Security Advisory
- May 29, 2026 Security Advisory
- May 29, 2026 Distribution Patch
- May 29, 2026 Distribution Patch
- May 29, 2026 Security Advisory
- May 29, 2026 Security Advisory
References
- RHSA-2023:5006 vendor-advisory
- RHSA-2023:6130 vendor-advisory
- RHSA-2023:6842 vendor-advisory
- RHBZ#2242173 issue
- https://github.com/openshift/kubernetes/pull/1736 url
- RHSA-2023:7479 vendor-advisory
- https://access.redhat.com/security/cve/CVE-2023-5408 vdb
- https://access.redhat.com/security/cve/cve-2023-5408 url