VDB
RHSA-2020%3A5259
RHSA-2020%3A5259
PUBLISHED
CVSS 5.300000190734863 MEDIUM
A flaw was found in kubernetes. In Kubernetes, if the logging level is to at least 4, processing a malformed docker config file will result in the contents of the docker config file being leaked, which can include pull secrets or other registry credentials. This can occur with client tools like `kubectl`, or other components that use registry credentials in a docker config file.
Risk Scores
CVSS 3.1
5.300000190734863
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | openshift4/ose-csi-snapshot-controller-rhel8@sha256:bcd5be9758d77ea7ea81f316f2816d2862f7ff72810b0612a504d4e96075e2c2_amd64 as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-csi-snapshot-controller-rhel8@sha256:bcd5be9758d77ea7ea81f316f2816d2862f7ff72810b0612a504d4e96075e2c2_amd64 |
| Red Hat | openshift4/ose-azure-machine-controllers@sha256:a07f5c620532d948977facf936ca0d1add88cabb3b7676b5dc3a9086088472c0_amd64 as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-azure-machine-controllers@sha256:a07f5c620532d948977facf936ca0d1add88cabb3b7676b5dc3a9086088472c0_amd64 |
| Red Hat | openshift4/ose-kube-rbac-proxy@sha256:cdcd410579161414399dfb60164366a6e13b1a9b0e93a13b6be169882a646270_s390x as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-kube-rbac-proxy@sha256:cdcd410579161414399dfb60164366a6e13b1a9b0e93a13b6be169882a646270_s390x |
| Red Hat | openshift4/ose-cluster-policy-controller-rhel8@sha256:d92072b61ee59ef3b9539770eb74c021463becc75fd642edd49c082f59664b37_amd64 as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-cluster-policy-controller-rhel8@sha256:d92072b61ee59ef3b9539770eb74c021463becc75fd642edd49c082f59664b37_amd64 |
| Red Hat | openshift4/ose-cluster-monitoring-operator@sha256:1f7253627d84cc2187e895d30bde81250bbb969dd2f7dea839a9abdb97f67d6e_ppc64le as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-cluster-monitoring-operator@sha256:1f7253627d84cc2187e895d30bde81250bbb969dd2f7dea839a9abdb97f67d6e_ppc64le |
| Red Hat | openshift4/ose-baremetal-machine-controllers@sha256:545f6e4942be12e142962f6a5105ec2cea1fc3537d1f906cb513dd00c6f8c511_s390x as a component of Red Hat OpenShift Container Platform 4.6 | * |
| Red Hat | openshift4/ose-baremetal-installer-rhel8@sha256:421719fc8e0401e737fb85d8a93c0d7113c5715fc7f70564a1d2ce50ae4ebfe9_amd64 as a component of Red Hat OpenShift Container Platform 4.6 | * |
| Red Hat | openshift4/ose-jenkins-agent-maven@sha256:2fea18a26d88df4679eb36bf6b31b2161268b81c0709c6d12270a0b032ffe2e7_s390x as a component of Red Hat OpenShift Container Platform 4.6 | * |
| Red Hat | openshift4/ose-csi-node-driver-registrar@sha256:6e5b1840debdd224ed0a331f65d1f4500712b6044530969dd05fdcde6ba8eb4c_amd64 as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-csi-node-driver-registrar@sha256:6e5b1840debdd224ed0a331f65d1f4500712b6044530969dd05fdcde6ba8eb4c_amd64 |
| Red Hat | openshift4/ose-insights-rhel8-operator@sha256:75357b9f404ad723655eaf9d934759668668f9ce3cfe1015a57d25029a2569cb_ppc64le as a component of Red Hat OpenShift Container Platform 4.6 | * |
| Red Hat | openshift4/ose-jenkins@sha256:34c2ac87ab49b5f75db347927f0f591ea990409d05b607e3316eaed52392dcb8_ppc64le as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-jenkins@sha256:34c2ac87ab49b5f75db347927f0f591ea990409d05b607e3316eaed52392dcb8_ppc64le |
| Red Hat | openshift4/ose-aws-ebs-csi-driver-rhel8@sha256:1276b9a8e3beef72c159a973585d6311bd58acba01b1a58ed14e8092eb2af5f3_s390x as a component of Red Hat OpenShift Container Platform 4.6 | * |
| Red Hat | openshift4/ose-machine-api-operator@sha256:21d0b4c445939ecd486fb41344ce394366f472453be0196f7e16573c8cd4ecbc_amd64 as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-machine-api-operator@sha256:21d0b4c445939ecd486fb41344ce394366f472453be0196f7e16573c8cd4ecbc_amd64 |
| Red Hat | openshift4/ose-kube-state-metrics@sha256:2a641fb2f8c171fde6567a8dae3aeff18e334c7690c83c6b4c608302980e316f_s390x as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-kube-state-metrics@sha256:2a641fb2f8c171fde6567a8dae3aeff18e334c7690c83c6b4c608302980e316f_s390x |
| Red Hat | openshift4/ose-prometheus-operator@sha256:062865508a6126061ab601a34baee32a44997ef10a01ab03bb1d174cc30a2796_amd64 as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-prometheus-operator@sha256:062865508a6126061ab601a34baee32a44997ef10a01ab03bb1d174cc30a2796_amd64 |
| Red Hat | openshift4/ose-cluster-update-keys@sha256:7bbc8ce68aafa9c07a0df47dd25aff3af81e4612fbb6c705e4721c632dfa95a6_amd64 as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-cluster-update-keys@sha256:7bbc8ce68aafa9c07a0df47dd25aff3af81e4612fbb6c705e4721c632dfa95a6_amd64 |
| Red Hat | openshift4/ose-csi-livenessprobe-rhel8@sha256:cb37ba8ae708c9044463272bcbc368be61ef99f9c56286b45c484462bfc17dd4_ppc64le as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-csi-livenessprobe-rhel8@sha256:cb37ba8ae708c9044463272bcbc368be61ef99f9c56286b45c484462bfc17dd4_ppc64le |
| Red Hat | openshift4/ose-aws-pod-identity-webhook-rhel8@sha256:dfe9ae8465684fa40b1703ef4234f87d2a54d4fe0c0d801ab29493cc3527f40b_s390x as a component of Red Hat OpenShift Container Platform 4.6 | * |
| Red Hat | openshift4/ose-aws-ebs-csi-driver-rhel8-operator@sha256:07477efaa2119f2a9bcda387a973839f5ae6b202ed84f272b984f9d6d60d5e56_ppc64le as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-aws-ebs-csi-driver-rhel8-operator@sha256:07477efaa2119f2a9bcda387a973839f5ae6b202ed84f272b984f9d6d60d5e56_ppc64le |
| Red Hat | openshift4/ose-csi-external-snapshotter@sha256:ac68cc55f00f1f8570b3c4cbba864475067287a054caa2df28c594cdd4336fe6_amd64 as a component of Red Hat OpenShift Container Platform 4.6 | openshift4/ose-csi-external-snapshotter@sha256:ac68cc55f00f1f8570b3c4cbba864475067287a054caa2df28c594cdd4336fe6_amd64 |
…and 339 more
Timeline
- Dec 14, 2020 CVE Published
- Nov 21, 2025 CVE Updated
- May 1, 2026 Distribution Patch
- May 1, 2026 Distribution Patch
- May 1, 2026 Security Advisory
- May 1, 2026 Security Advisory
References
- https://access.redhat.com/errata/RHSA-2020:5259 advisory
- https://access.redhat.com/security/updates/classification/#moderate advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1885619 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1886637 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1886769 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1887519 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1887782 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1888467 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1888602 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1888862 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1888910 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1890232 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1890614 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1891518 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1891795 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1892270 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1892382 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1892428 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1892706 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1893480 issue
…and 43 more