CVE-2020-1708
published 2020-02-07CVE-2020-1708: It has been found in openshift-enterprise version 3.11 and all openshift-enterprise versions from 4.1 to, including 4.3, that multiple containers modify the…
PriorityP433high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
EPSS
0.28%
20.0th percentile
It has been found in openshift-enterprise version 3.11 and all openshift-enterprise versions from 4.1 to, including 4.3, that multiple containers modify the permissions of /etc/passwd to make them modifiable by users other than root. An attacker with access to the running container can exploit this to modify /etc/passwd to add a user and escalate their privileges. This CVE is specific to the openshift/mysql-apb.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| red_hat | openshift_mysql-apb | — | — |
| red_hat | openshift_mysql-apb | — | — |
| redhat | openshift_container_platform | — | — |
| redhat | openshift_container_platform | — | — |
| redhat | openshift_container_platform | — | — |
| redhat | openshift_container_platform | — | — |
CVSS provenance
nvdv3.17.0HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.4MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
vendor_redhat7.0HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vfjr-r7c6-mq2h: It has been found in openshift-enterprise version 3
ghsa_unreviewed·2022-05-24
CVE-2020-1708 [MEDIUM] CWE-266 GHSA-vfjr-r7c6-mq2h: It has been found in openshift-enterprise version 3
It has been found in openshift-enterprise version 3.11 and all openshift-enterprise versions from 4.1 to, including 4.3, that multiple containers modify the permissions of /etc/passwd to make them modifiable by users other than root. An attacker with access to the running container can exploit this to modify /etc/passwd to add a user and escalate their privileges. This CVE is specific to the openshift/mysql-apb.
Red Hat
openshift/mysql-apb: /etc/passwd is given incorrect privileges
vendor_redhat·2020-01-21·CVSS 7.0
CVE-2020-1708 [HIGH] CWE-266 openshift/mysql-apb: /etc/passwd is given incorrect privileges
openshift/mysql-apb: /etc/passwd is given incorrect privileges
It has been found in openshift-enterprise version 3.11 and all openshift-enterprise versions from 4.1 to, including 4.3, that multiple containers modify the permissions of /etc/passwd to make them modifiable by users other than root. An attacker with access to the running container can exploit this to modify /etc/passwd to add a user and escalate their privileges. This CVE is specific to the openshift/mysql-apb.
An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/mysql-apb. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.
Statement: By default this vulnerability is not exploitable in un-privilieged containers runn
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-1708 openshift/mysql-apb: /etc/passwd is given incorrect privileges
bugzilla·2020-01-21·CVSS 7.0
CVE-2020-1708 [HIGH] CVE-2020-1708 openshift/mysql-apb: /etc/passwd is given incorrect privileges
CVE-2020-1708 openshift/mysql-apb: /etc/passwd is given incorrect privileges
It has been found that multiple containers modify the permissions of /etc/passwd to make them modifiable by users other than root. An attacker with access to the running container can exploit this to modify /etc/passwd to add a user and escalate their privileges. This CVE is specific to the openshift/mysql-apb.
Original bug:
https://bugzilla.redhat.com/show_bug.cgi?id=1791534
Discussion:
Statement:
By default this vulnerability is not exploitable in un-privilieged containers running on OpenShift Container Platform. This is because the system call SETUID and SETGID is blocked by the default seccomp policy.
---
Acknowledgments:
Name: Joseph LaMagna-Reiter (SPR Inc.)
---
This issue has been addressed in the
Bugzilla
CVE-2018-12085 liblouis: Stack-based buffer overflow in compileTranslationTable.c
bugzilla·2018-06-11·CVSS 8.8
CVE-2018-12085 [HIGH] CVE-2018-12085 liblouis: Stack-based buffer overflow in compileTranslationTable.c
CVE-2018-12085 liblouis: Stack-based buffer overflow in compileTranslationTable.c
A flaw was found in Liblouis 3.6.0. A stack-based Buffer Overflow in the function parseChars in compileTranslationTable.c, a different vulnerability than CVE-2018-11440.
References:
https://github.com/liblouis/liblouis/issues/595
Patch:
https://github.com/liblouis/liblouis/commit/dbfa58bb128cae86729578ac596056b3385817ef
Discussion:
Created liblouis tracking bugs for this issue:
Affects: fedora-all [bug 1589943]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2020:1708 https://access.redhat.com/errata/RHSA-2020:1708
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/se
Bugzilla
CVE-2018-11685 liblouis: Stack-based buffer overflow in function compileHyphenation in compileTranslationTable.c
bugzilla·2018-06-07·CVSS 8.8
CVE-2018-11685 [HIGH] CVE-2018-11685 liblouis: Stack-based buffer overflow in function compileHyphenation in compileTranslationTable.c
CVE-2018-11685 liblouis: Stack-based buffer overflow in function compileHyphenation in compileTranslationTable.c
Liblouis 3.5.0 has a stack-based Buffer Overflow in the function compileHyphenation in compileTranslationTable.c.
Upstream issue:
https://github.com/liblouis/liblouis/issues/593
Upstream patch:
https://github.com/liblouis/liblouis/commit/b5049cb17ae3d15b2b26890de0e24d0fecc080f5
Discussion:
Created liblouis tracking bugs for this issue:
Affects: fedora-all [bug 1588638]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2020:1708 https://access.redhat.com/errata/RHSA-2020:1708
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/
Bugzilla
CVE-2018-11577 liblouis: Segmentation fault in logging.c:lou_logPrint()
bugzilla·2018-06-05·CVSS 8.8
CVE-2018-11577 [HIGH] CVE-2018-11577 liblouis: Segmentation fault in logging.c:lou_logPrint()
CVE-2018-11577 liblouis: Segmentation fault in logging.c:lou_logPrint()
Liblouis before version 3.6.0 is vulnerable to a segmentation fault in the logging.c:lou_logPrint() function. An attacker could exploit this to cause a denial of service.
Upstream issue:
https://github.com/liblouis/liblouis/issues/582
Upstream patch:
https://github.com/liblouis/liblouis/commit/3cb3a2c7cb10daf42cefa40e70c8d4cc4e8f751f
Discussion:
Created liblouis tracking bugs for this issue:
Affects: fedora-all [bug 1585907]
---
Statement:
Red Hat Product Security has rated this issue as having security impact of Low, and a future update may address this flaw.
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2020:1708 https://access.redhat.com/errata/RHSA
Checkpoint
26th February – Threat Intelligence Report
blogs_checkpoint·2024-02-26
CVE-2024-1708 26th February – Threat Intelligence Report
Latest Publications
CPR Podcast Channel
AI Research
Web 3.0 Security
Intelligence Reports
ThreatCloud AI
Threat Intelligence & Research
Zero Day Protection
Sandblast File Analysis
About Us
SUBSCRIBE
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
## 26th February – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 26th February, please download our Threat_Intelligence Bulletin .
TOP ATTACKS AND BREACHES
The American Prince George’s County Public Schools (PGCPS) has experienced a ransomware attack that compromised the personal data of nearly 100K individuals. The attack exposed individuals’ full names, financial account information, and Social Security Numbers. The Rhysida ransomware gang is reportedly responsible for t
https://access.redhat.com/errata/RHSA-2020:0617https://access.redhat.com/errata/RHSA-2020:0681https://access.redhat.com/errata/RHSA-2020:0694https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1708https://access.redhat.com/errata/RHSA-2020:0617https://access.redhat.com/errata/RHSA-2020:0681https://access.redhat.com/errata/RHSA-2020:0694https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1708
2020-02-07
Published