VDB
RHSA-2020%3A5359
RHSA-2020%3A5359
PUBLISHED
CVSS 5.300000190734863 MEDIUM
A flaw was found in kubernetes. In Kubernetes, if the logging level is to at least 4, processing a malformed docker config file will result in the contents of the docker config file being leaked, which can include pull secrets or other registry credentials. This can occur with client tools like `kubectl`, or other components that use registry credentials in a docker config file.
Risk Scores
CVSS 3.1
5.300000190734863
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | openshift4/ose-kube-rbac-proxy@sha256:57d6a5f35386955b90388ee07102ea188debdd051cf7c43c693b8cfd94a4dbf7_amd64 as a component of Red Hat OpenShift Container Platform 4.5 | * |
| Red Hat | openshift4/ose-keepalived-ipfailover@sha256:5ddb269afe31eba28ed76b9d40887a6383f7ba0920165c323bbc25c3b59beebc_ppc64le as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-keepalived-ipfailover@sha256:5ddb269afe31eba28ed76b9d40887a6383f7ba0920165c323bbc25c3b59beebc_ppc64le |
| Red Hat | openshift4/ose-configmap-reloader@sha256:9437ae15a658c00586ccfdb2ac96d6d63292c95d98c9bbdfdf8e00ad90bd74ca_s390x as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-configmap-reloader@sha256:9437ae15a658c00586ccfdb2ac96d6d63292c95d98c9bbdfdf8e00ad90bd74ca_s390x |
| Red Hat | openshift4/ose-cluster-kube-scheduler-operator@sha256:8baf12d355bbc133f9b3ce14238dcdf2d8f7e970b6262e879f7fbacc119ed56b_amd64 as a component of Red Hat OpenShift Container Platform 4.5 | * |
| Red Hat | openshift4/ose-local-storage-static-provisioner@sha256:d1d0f640a3b1346bc8606ac64bf167dbcc1e9eda4cf665e69fc2f21fcf62e25a_amd64 as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-local-storage-static-provisioner@sha256:d1d0f640a3b1346bc8606ac64bf167dbcc1e9eda4cf665e69fc2f21fcf62e25a_amd64 |
| Red Hat | openshift4/ose-ironic-inspector-rhel8@sha256:9fd0eb462f336aea91b050eb6131416b53bb213512645a3769a0a9ae15ada6a3_amd64 as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-ironic-inspector-rhel8@sha256:9fd0eb462f336aea91b050eb6131416b53bb213512645a3769a0a9ae15ada6a3_amd64 |
| Red Hat | openshift4/ose-cluster-samples-operator@sha256:ca9e3ef462641720e1a17863ceeb83c3a48f1350cf1c4a812751006f60b816d5_amd64 as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-cluster-samples-operator@sha256:ca9e3ef462641720e1a17863ceeb83c3a48f1350cf1c4a812751006f60b816d5_amd64 |
| Red Hat | openshift4/ose-cluster-version-operator@sha256:ed29aebd8333a8bf7f90a5cfe6f3f72a1e72150c063fa8089fbaba3f3f987677_amd64 as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-cluster-version-operator@sha256:ed29aebd8333a8bf7f90a5cfe6f3f72a1e72150c063fa8089fbaba3f3f987677_amd64 |
| Red Hat | openshift4/ose-console@sha256:e0a4721b2093737e13a1b18ec60eabc52b5913b91e454985ad9c4b7a07563e8e_amd64 as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-console@sha256:e0a4721b2093737e13a1b18ec60eabc52b5913b91e454985ad9c4b7a07563e8e_amd64 |
| Red Hat | openshift4/ose-prometheus-operator@sha256:55b7ee5d668b84cb25e976ea125ce3a2a71060e83f3807e9dc34a6893c7a0a7e_ppc64le as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-prometheus-operator@sha256:55b7ee5d668b84cb25e976ea125ce3a2a71060e83f3807e9dc34a6893c7a0a7e_ppc64le |
| Red Hat | openshift4/ose-jenkins-agent-maven@sha256:b7acd26174671c1fd7a15bd1c71aa260451f6a73b871dbcc601214b409e5d06d_amd64 as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-jenkins-agent-maven@sha256:b7acd26174671c1fd7a15bd1c71aa260451f6a73b871dbcc601214b409e5d06d_amd64 |
| Red Hat | openshift4/ose-prometheus-alertmanager@sha256:a970ac6aaf46084378d582ac89c0dce76cd1c58463d05a34858b9dd206e481ce_ppc64le as a component of Red Hat OpenShift Container Platform 4.5 | * |
| Red Hat | openshift4/ose-jenkins-agent-maven@sha256:307eeda0774357094c073465ec95d07ca4b69e107e8541c8b37b81a2512a569e_s390x as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-jenkins-agent-maven@sha256:307eeda0774357094c073465ec95d07ca4b69e107e8541c8b37b81a2512a569e_s390x |
| Red Hat | openshift4/ose-console-operator@sha256:35927b73b4fb13d63b45c7a2ee795c71529f4e58f994a74c86f55fc35e5ed783_amd64 as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-console-operator@sha256:35927b73b4fb13d63b45c7a2ee795c71529f4e58f994a74c86f55fc35e5ed783_amd64 |
| Red Hat | openshift4/ose-installer@sha256:898378ff6d6f2cb6c5f314f73e0b03ba0c06891e9f0be7147edcad9f891f7e15_amd64 as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-installer@sha256:898378ff6d6f2cb6c5f314f73e0b03ba0c06891e9f0be7147edcad9f891f7e15_amd64 |
| Red Hat | openshift4/ose-cluster-bootstrap@sha256:e6b0813efe96301c455da250c7cb38ea32382131e6678e0abca7b251b5c74b40_amd64 as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-cluster-bootstrap@sha256:e6b0813efe96301c455da250c7cb38ea32382131e6678e0abca7b251b5c74b40_amd64 |
| Red Hat | openshift4/ose-cluster-image-registry-operator@sha256:bf187f0befb5e133625420554a4b79965ddc2ae8400a39e52c9b6ee62ccd9f71_amd64 as a component of Red Hat OpenShift Container Platform 4.5 | * |
| Red Hat | openshift4/ose-prometheus-operator@sha256:0fa9a01a0778bfaebb9adc728d24c17c08ac7579be5ec0d8995ce483b6f9a10f_s390x as a component of Red Hat OpenShift Container Platform 4.5 | openshift4/ose-prometheus-operator@sha256:0fa9a01a0778bfaebb9adc728d24c17c08ac7579be5ec0d8995ce483b6f9a10f_s390x |
| Red Hat | openshift4/ose-prometheus-alertmanager@sha256:863336c66f134efa422a6195ecde9422f9c02a224ee86ab8f4e38304ee973ff1_s390x as a component of Red Hat OpenShift Container Platform 4.5 | * |
| Red Hat | openshift4/ose-installer-artifacts@sha256:0b9f55f70bc9c2dffc388f7efc04af817435a74b1e13df4004e981af9dd7a0d0_amd64 as a component of Red Hat OpenShift Container Platform 4.5 | * |
…and 213 more
Timeline
- Dec 15, 2020 CVE Published
- Nov 21, 2025 CVE Updated
- May 1, 2026 Distribution Patch
- May 1, 2026 Distribution Patch
- May 1, 2026 Security Advisory
- May 1, 2026 Security Advisory
References
- https://access.redhat.com/errata/RHSA-2020:5359 advisory
- https://access.redhat.com/security/updates/classification/#moderate advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1869320 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1886383 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1886637 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1891168 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1891527 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1892583 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1896601 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1896914 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1897543 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1898199 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1900013 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1900491 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1900725 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1902803 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1904082 issue
- https://bugzilla.redhat.com/show_bug.cgi?id=1904554 issue
- https://security.access.redhat.com/data/csaf/v2/advisories/2020/rhsa-2020_5359.json advisory
- https://access.redhat.com/security/cve/CVE-2020-8564 advisory
…and 4 more