Redhat Migration Toolkit vulnerabilities
2 known vulnerabilities affecting redhat/migration_toolkit.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2021-3948MEDIUMCVSS 6.3v1.0v1.5+1 more2022-02-18
CVE-2021-3948 [MEDIUM] CWE-276 CVE-2021-3948: An incorrect default permissions vulnerability was found in the mig-controller. Due to an incorrect
An incorrect default permissions vulnerability was found in the mig-controller. Due to an incorrect cluster namespaces handling an attacker may be able to migrate a malicious workload to the target cluster, impacting confidentiality, integrity, and availability of the services located on that cluster.
nvd
CVE-2020-1712HIGHCVSS 7.8v1.02020-03-31
CVE-2020-1712 [HIGH] CWE-416 CVE-2020-1712: A heap use-after-free vulnerability was found in systemd before version v245-rc1, where asynchronous
A heap use-after-free vulnerability was found in systemd before version v245-rc1, where asynchronous Polkit queries are performed while handling dbus messages. A local unprivileged attacker can abuse this flaw to crash systemd services or potentially execute code and elevate their privileges, by sending specially crafted dbus messages.
nvd