Vulnerabilities > CVE-2020-1708 - Incorrect Privilege Assignment vulnerability in Redhat Openshift Container Platform

047910
CVSS 7.0 - HIGH
Attack vector
LOCAL
Attack complexity
HIGH
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
high complexity
redhat
CWE-266

Summary

It has been found in openshift-enterprise version 3.11 and all openshift-enterprise versions from 4.1 to, including 4.3, that multiple containers modify the permissions of /etc/passwd to make them modifiable by users other than root. An attacker with access to the running container can exploit this to modify /etc/passwd to add a user and escalate their privileges. This CVE is specific to the openshift/mysql-apb.

Common Weakness Enumeration (CWE)

Redhat

advisories
  • rhsa
    idRHSA-2020:0617
  • rhsa
    idRHSA-2020:0681
  • rhsa
    idRHSA-2020:0694