VDB

RHSA-2020%3A3520

RHSA-2020%3A3520 PUBLISHED CVSS 5.5 MEDIUM

A flaw was found in Kubernetes, where the amount of disk space the /etc/hosts file can use is unconstrained . This flaw can allow attacker-controlled pods to cause a denial of service if they have permission to write to the node's /etc/hosts file.

Risk Scores

CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Affected Products

VendorProductVersions
Red Hatopenshift4/ose-hyperkube@sha256:b3450188d682c952d840bdac34a349f9c832e057a086b936b8341abf8dd3b0b5_s390x as a component of Red Hat OpenShift Container Platform 4.5*
Red Hatopenshift4/ose-hyperkube@sha256:830614358a9e59a02f3e46fcaae60713cdb2b5263a8bdc518da14951d2364302_ppc64le as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-hyperkube@sha256:830614358a9e59a02f3e46fcaae60713cdb2b5263a8bdc518da14951d2364302_ppc64le
Red Hatopenshift4/ose-hyperkube@sha256:b331e1b8097cc86402f23aaf4975943487cb375310232f71f54d83160aa8c854_amd64 as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-hyperkube@sha256:b331e1b8097cc86402f23aaf4975943487cb375310232f71f54d83160aa8c854_amd64

Timeline

  • Aug 24, 2020 CVE Published
  • Nov 21, 2025 CVE Updated
  • May 1, 2026 Distribution Patch
  • May 1, 2026 Distribution Patch
  • May 1, 2026 Security Advisory
  • May 1, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›