VDB

RHSA-2020%3A5359

RHSA-2020%3A5359 PUBLISHED CVSS 5.300000190734863 MEDIUM

A flaw was found in kubernetes. In Kubernetes, if the logging level is to at least 4, processing a malformed docker config file will result in the contents of the docker config file being leaked, which can include pull secrets or other registry credentials. This can occur with client tools like `kubectl`, or other components that use registry credentials in a docker config file.

Risk Scores

CVSS 3.1
5.300000190734863
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N

Affected Products

VendorProductVersions
Red Hatopenshift4/ose-kube-rbac-proxy@sha256:57d6a5f35386955b90388ee07102ea188debdd051cf7c43c693b8cfd94a4dbf7_amd64 as a component of Red Hat OpenShift Container Platform 4.5*
Red Hatopenshift4/ose-keepalived-ipfailover@sha256:5ddb269afe31eba28ed76b9d40887a6383f7ba0920165c323bbc25c3b59beebc_ppc64le as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-keepalived-ipfailover@sha256:5ddb269afe31eba28ed76b9d40887a6383f7ba0920165c323bbc25c3b59beebc_ppc64le
Red Hatopenshift4/ose-configmap-reloader@sha256:9437ae15a658c00586ccfdb2ac96d6d63292c95d98c9bbdfdf8e00ad90bd74ca_s390x as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-configmap-reloader@sha256:9437ae15a658c00586ccfdb2ac96d6d63292c95d98c9bbdfdf8e00ad90bd74ca_s390x
Red Hatopenshift4/ose-cluster-kube-scheduler-operator@sha256:8baf12d355bbc133f9b3ce14238dcdf2d8f7e970b6262e879f7fbacc119ed56b_amd64 as a component of Red Hat OpenShift Container Platform 4.5*
Red Hatopenshift4/ose-local-storage-static-provisioner@sha256:d1d0f640a3b1346bc8606ac64bf167dbcc1e9eda4cf665e69fc2f21fcf62e25a_amd64 as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-local-storage-static-provisioner@sha256:d1d0f640a3b1346bc8606ac64bf167dbcc1e9eda4cf665e69fc2f21fcf62e25a_amd64
Red Hatopenshift4/ose-ironic-inspector-rhel8@sha256:9fd0eb462f336aea91b050eb6131416b53bb213512645a3769a0a9ae15ada6a3_amd64 as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-ironic-inspector-rhel8@sha256:9fd0eb462f336aea91b050eb6131416b53bb213512645a3769a0a9ae15ada6a3_amd64
Red Hatopenshift4/ose-cluster-samples-operator@sha256:ca9e3ef462641720e1a17863ceeb83c3a48f1350cf1c4a812751006f60b816d5_amd64 as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-cluster-samples-operator@sha256:ca9e3ef462641720e1a17863ceeb83c3a48f1350cf1c4a812751006f60b816d5_amd64
Red Hatopenshift4/ose-cluster-version-operator@sha256:ed29aebd8333a8bf7f90a5cfe6f3f72a1e72150c063fa8089fbaba3f3f987677_amd64 as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-cluster-version-operator@sha256:ed29aebd8333a8bf7f90a5cfe6f3f72a1e72150c063fa8089fbaba3f3f987677_amd64
Red Hatopenshift4/ose-console@sha256:e0a4721b2093737e13a1b18ec60eabc52b5913b91e454985ad9c4b7a07563e8e_amd64 as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-console@sha256:e0a4721b2093737e13a1b18ec60eabc52b5913b91e454985ad9c4b7a07563e8e_amd64
Red Hatopenshift4/ose-prometheus-operator@sha256:55b7ee5d668b84cb25e976ea125ce3a2a71060e83f3807e9dc34a6893c7a0a7e_ppc64le as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-prometheus-operator@sha256:55b7ee5d668b84cb25e976ea125ce3a2a71060e83f3807e9dc34a6893c7a0a7e_ppc64le
Red Hatopenshift4/ose-jenkins-agent-maven@sha256:b7acd26174671c1fd7a15bd1c71aa260451f6a73b871dbcc601214b409e5d06d_amd64 as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-jenkins-agent-maven@sha256:b7acd26174671c1fd7a15bd1c71aa260451f6a73b871dbcc601214b409e5d06d_amd64
Red Hatopenshift4/ose-prometheus-alertmanager@sha256:a970ac6aaf46084378d582ac89c0dce76cd1c58463d05a34858b9dd206e481ce_ppc64le as a component of Red Hat OpenShift Container Platform 4.5*
Red Hatopenshift4/ose-jenkins-agent-maven@sha256:307eeda0774357094c073465ec95d07ca4b69e107e8541c8b37b81a2512a569e_s390x as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-jenkins-agent-maven@sha256:307eeda0774357094c073465ec95d07ca4b69e107e8541c8b37b81a2512a569e_s390x
Red Hatopenshift4/ose-console-operator@sha256:35927b73b4fb13d63b45c7a2ee795c71529f4e58f994a74c86f55fc35e5ed783_amd64 as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-console-operator@sha256:35927b73b4fb13d63b45c7a2ee795c71529f4e58f994a74c86f55fc35e5ed783_amd64
Red Hatopenshift4/ose-installer@sha256:898378ff6d6f2cb6c5f314f73e0b03ba0c06891e9f0be7147edcad9f891f7e15_amd64 as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-installer@sha256:898378ff6d6f2cb6c5f314f73e0b03ba0c06891e9f0be7147edcad9f891f7e15_amd64
Red Hatopenshift4/ose-cluster-bootstrap@sha256:e6b0813efe96301c455da250c7cb38ea32382131e6678e0abca7b251b5c74b40_amd64 as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-cluster-bootstrap@sha256:e6b0813efe96301c455da250c7cb38ea32382131e6678e0abca7b251b5c74b40_amd64
Red Hatopenshift4/ose-cluster-image-registry-operator@sha256:bf187f0befb5e133625420554a4b79965ddc2ae8400a39e52c9b6ee62ccd9f71_amd64 as a component of Red Hat OpenShift Container Platform 4.5*
Red Hatopenshift4/ose-prometheus-operator@sha256:0fa9a01a0778bfaebb9adc728d24c17c08ac7579be5ec0d8995ce483b6f9a10f_s390x as a component of Red Hat OpenShift Container Platform 4.5openshift4/ose-prometheus-operator@sha256:0fa9a01a0778bfaebb9adc728d24c17c08ac7579be5ec0d8995ce483b6f9a10f_s390x
Red Hatopenshift4/ose-prometheus-alertmanager@sha256:863336c66f134efa422a6195ecde9422f9c02a224ee86ab8f4e38304ee973ff1_s390x as a component of Red Hat OpenShift Container Platform 4.5*
Red Hatopenshift4/ose-installer-artifacts@sha256:0b9f55f70bc9c2dffc388f7efc04af817435a74b1e13df4004e981af9dd7a0d0_amd64 as a component of Red Hat OpenShift Container Platform 4.5*

…and 213 more

Timeline

  • Dec 15, 2020 CVE Published
  • Nov 21, 2025 CVE Updated
  • May 1, 2026 Distribution Patch
  • May 1, 2026 Distribution Patch
  • May 1, 2026 Security Advisory
  • May 1, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›