VDB
CVE-2021-25749
CVE-2021-25749
PUBLISHED
Es existiert eine Schwachstelle in Kubernetes. Workloads können als "ContrainerAdministrator" laufen, obwohl diese explizit als "Non-Root" gelabelt sind. Ein authentisierter Angreifer im gleichen Netzbereich kann diese Schwachstellen ausnutzen, um Sicherheitsvorkehrungen zu umgehen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich.
EPSS 0.04% · 11.7th percentile
Risk Scores
EPSS Score
0.04%
11.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| SUSE | SUSE Linux | |
| Oracle | Oracle Linux | |
| IBM | IBM MQ | |
| Red Hat | Red Hat Enterprise Linux | |
| Red Hat | Red Hat OpenShift Data Foundation 4 | |
| Red Hat | Red Hat OpenShift container platform 4.10 | |
| Red Hat | Red Hat OpenShift |
Timeline
- Sep 18, 2022 CVE Published
- May 25, 2023 EPSS Score
- Jun 15, 2023 CVE Updated
- Jun 30, 2023 EPSS Score
- Aug 5, 2023 EPSS Score
- Sep 11, 2023 EPSS Score
- Oct 17, 2023 EPSS Score
- Nov 22, 2023 EPSS Score
- Dec 28, 2023 EPSS Score
- Feb 2, 2024 EPSS Score
- Mar 9, 2024 EPSS Score
- Apr 15, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2022/wid-sec-w-2022-1458.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2022-1458 advisory
- https://www.ibm.com/support/pages/node/7004197 advisory
- https://access.redhat.com/errata/RHSA-2023:3609 advisory
- https://lists.suse.com/pipermail/sle-security-updates/2023-May/014985.html advisory
- https://access.redhat.com/errata/RHSA-2023:1655 advisory
- https://seclists.org/oss-sec/2022/q3/207 advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2127808 advisory
- https://linux.oracle.com/errata/ELSA-2022-9856.html advisory
- https://linux.oracle.com/errata/ELSA-2022-9853.html advisory
- https://linux.oracle.com/errata/ELSA-2022-9854.html advisory
- https://linux.oracle.com/errata/ELSA-2022-10036.html advisory
- https://linux.oracle.com/errata/ELSA-2022-10033.html advisory
- https://linux.oracle.com/errata/ELSA-2023-12011.html advisory
- https://linux.oracle.com/errata/ELSA-2023-12014.html advisory
- https://linux.oracle.com/errata/ELSA-2023-12013.html advisory
- https://linux.oracle.com/errata/ELSA-2023-12012.html advisory
- https://access.redhat.com/errata/RHSA-2022:7398 advisory
- https://access.redhat.com/errata/RHSA-2022:9096 advisory