Redhat Openshift Container Platform vulnerabilities
312 known vulnerabilities affecting redhat/openshift_container_platform.
Total CVEs
312
CISA KEV
8
actively exploited
Public exploits
24
Exploited in wild
17
Severity breakdown
CRITICAL39HIGH138MEDIUM126LOW9
Vulnerabilities
Page 9 of 16
CVE-2019-19354P3HIGHCVSS 7.8≥ 4.4, < 4.4.32021-03-24
CVE-2019-19354 [HIGH] CWE-266 CVE-2019-19354: An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/h
An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/hadoop as shipped in Red Hat Openshift 4. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.
nvd
CVE-2026-6846P3HIGHCVSS 7.8v4.02026-04-22
CVE-2026-6846 [HIGH] CWE-122 CVE-2026-6846: A flaw was found in binutils. A heap-buffer-overflow vulnerability exists when processing a speciall
A flaw was found in binutils. A heap-buffer-overflow vulnerability exists when processing a specially crafted XCOFF (Extended Common Object File Format) object file during linking. A local attacker could trick a user into processing this malicious file, which could lead to arbitrary code execution, allowing the attacker to run unauthorized commands, or
nvd
CVE-2019-1003004P3HIGHCVSS 7.2v3.112019-01-22
CVE-2019-1003004 [HIGH] CVE-2019-1003004: An improper authorization vulnerability exists in Jenkins 2.158 and earlier, LTS 2.150.1 and earlier
An improper authorization vulnerability exists in Jenkins 2.158 and earlier, LTS 2.150.1 and earlier in core/src/main/java/hudson/security/AuthenticationProcessingFilter2.java that allows attackers to extend the duration of active HTTP sessions indefinitely even though the user account may have been deleted in the mean time.
nvd
CVE-2020-27781P3HIGHCVSS 7.1v4.02020-12-18
CVE-2020-27781 [HIGH] CWE-522 CVE-2020-27781: User credentials can be manipulated and stolen by Native CephFS consumers of OpenStack Manila, resul
User credentials can be manipulated and stolen by Native CephFS consumers of OpenStack Manila, resulting in potential privilege escalation. An Open Stack Manila user can request access to a share to an arbitrary cephx user, including existing users. The access key is retrieved via the interface drivers. Then, all users of the requesting OpenStack proj
nvd
CVE-2024-7079P3MEDIUMCVSS 6.5v3.11v4.02024-07-24
CVE-2024-7079 [MEDIUM] CWE-306 CVE-2024-7079: A flaw was found in the Openshift console. The /API/helm/verify endpoint is tasked to fetch and veri
A flaw was found in the Openshift console. The /API/helm/verify endpoint is tasked to fetch and verify the installation of a Helm chart from a URI that is remote HTTP/HTTPS or local. Access to this endpoint is gated by the authHandlerWithUser() middleware function. Contrary to its name, this middleware function does not verify the validity of the user
nvd
CVE-2020-1712P3HIGHCVSS 7.8v4.02020-03-31
CVE-2020-1712 [HIGH] CWE-416 CVE-2020-1712: A heap use-after-free vulnerability was found in systemd before version v245-rc1, where asynchronous
A heap use-after-free vulnerability was found in systemd before version v245-rc1, where asynchronous Polkit queries are performed while handling dbus messages. A local unprivileged attacker can abuse this flaw to crash systemd services or potentially execute code and elevate their privileges, by sending specially crafted dbus messages.
nvd
CVE-2023-3089P3HIGHCVSS 7.5v4.102023-07-05
CVE-2023-3089 [HIGH] CWE-693 CVE-2023-3089: A compliance problem was found in the Red Hat OpenShift Container Platform. Red Hat discovered that,
A compliance problem was found in the Red Hat OpenShift Container Platform. Red Hat discovered that, when FIPS mode was enabled, not all of the cryptographic modules in use were FIPS-validated.
nvd
CVE-2019-11250P3MEDIUMCVSS 6.5v3.11v4.12019-08-29
CVE-2019-11250 [MEDIUM] CWE-532 CVE-2019-11250: The Kubernetes client-go library logs request headers at verbosity levels of 7 or higher. This can d
The Kubernetes client-go library logs request headers at verbosity levels of 7 or higher. This can disclose credentials to unauthorized users via logs or command output. Kubernetes components (such as kube-apiserver) prior to v1.16.0, which make use of basic or bearer token authentication, and run at high verbosity levels, are affected.
nvd
CVE-2026-4878P3HIGHCVSS 7.0v4.02026-04-09
CVE-2026-4878 [HIGH] CWE-367 CVE-2026-4878: A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TO
A flaw was found in libcap. A local unprivileged user can exploit a Time-of-check-to-time-of-use (TOCTOU) race condition in the `cap_set_file()` function. This allows an attacker with write access to a parent directory to redirect file capability updates to an attacker-controlled file. By doing so, capabilities can be injected into or stripped from unin
nvd
CVE-2018-20615P3HIGHCVSS 7.5v3.112019-03-21
CVE-2018-20615 [HIGH] CWE-125 CVE-2018-20615: An out-of-bounds read issue was discovered in the HTTP/2 protocol decoder in HAProxy 1.8.x and 1.9.x
An out-of-bounds read issue was discovered in the HTTP/2 protocol decoder in HAProxy 1.8.x and 1.9.x through 1.9.0 which can result in a crash. The processing of the PRIORITY flag in a HEADERS frame requires 5 extra bytes, and while these bytes are skipped, the total frame length was not re-checked to make sure they were present in the frame.
nvd
CVE-2024-1725P3MEDIUMCVSS 6.5v4.13v4.14+1 more2024-03-07
CVE-2024-1725 [MEDIUM] CWE-501 CVE-2024-1725: A flaw was found in the kubevirt-csi component of OpenShift Virtualization's Hosted Control Plane (H
A flaw was found in the kubevirt-csi component of OpenShift Virtualization's Hosted Control Plane (HCP). This issue could allow an authenticated attacker to gain access to the root HCP worker node's volume by creating a custom Persistent Volume that matches the name of a worker node.
nvd
CVE-2022-1677P3MEDIUMCVSS 6.3v3.11v4.6+5 more2022-09-01
CVE-2022-1677 [MEDIUM] CWE-400 CVE-2022-1677: In OpenShift Container Platform, a user with permissions to create or modify Routes can craft a payl
In OpenShift Container Platform, a user with permissions to create or modify Routes can craft a payload that inserts a malformed entry into one of the cluster router's HAProxy configuration files. This malformed entry can match any arbitrary hostname, or all hostnames in the cluster, and direct traffic to an arbitrary application within the cluster, i
nvd
CVE-2019-11249P3MEDIUMCVSS 6.5v3.9v3.10+2 more2019-08-29
CVE-2019-11249 [MEDIUM] CWE-61 CVE-2019-11249: The kubectl cp command allows copying files between containers and the user machine. To copy files f
The kubectl cp command allows copying files between containers and the user machine. To copy files from a container, Kubernetes runs tar inside the container to create a tar archive, copies it over the network, and kubectl unpacks it on the user’s machine. If the tar binary in the container is malicious, it could run any code and output unexpected, m
nvd
CVE-2019-3818P3HIGHCVSS 7.5v3.112019-02-05
CVE-2019-3818 [HIGH] CWE-327 CVE-2019-3818: The kube-rbac-proxy container before version 0.4.1 as used in Red Hat OpenShift Container Platform d
The kube-rbac-proxy container before version 0.4.1 as used in Red Hat OpenShift Container Platform does not honor TLS configurations, allowing for use of insecure ciphers and TLS 1.0. An attacker could target traffic sent over a TLS connection with a weak configuration and potentially break the encryption.
nvd
CVE-2023-6291P3HIGHCVSS 7.1v4.11v4.122024-01-26
CVE-2023-6291 [HIGH] CWE-601 CVE-2023-6291: A flaw was found in the redirect_uri validation logic in Keycloak. This issue may allow a bypass of
A flaw was found in the redirect_uri validation logic in Keycloak. This issue may allow a bypass of otherwise explicitly allowed hosts. A successful attack may lead to an access token being stolen, making it possible for the attacker to impersonate other users.
nvd
CVE-2024-9676P3MEDIUMCVSS 6.5v4.12v4.13+4 more2024-10-15
CVE-2024-9676 [MEDIUM] CWE-22 CVE-2024-9676: A vulnerability was found in Podman, Buildah, and CRI-O. A symlink traversal vulnerability in the co
A vulnerability was found in Podman, Buildah, and CRI-O. A symlink traversal vulnerability in the containers/storage library can cause Podman, Buildah, and CRI-O to hang and result in a denial of service via OOM kill when running a malicious image using an automatically assigned user namespace (`--userns=auto` in Podman and Buildah). The containers/sto
nvd
CVE-2022-1706P3MEDIUMCVSS 6.5v4.02022-05-17
CVE-2022-1706 [MEDIUM] CWE-863 CVE-2022-1706: A vulnerability was found in Ignition where ignition configs are accessible from unprivileged contai
A vulnerability was found in Ignition where ignition configs are accessible from unprivileged containers in VMs running on VMware products. This issue is only relevant in user environments where the Ignition config contains secrets. The highest threat from this vulnerability is to data confidentiality. Possible workaround is to not put secrets in the
nvd
CVE-2021-20270P3HIGHCVSS 7.5v3.11v4.02021-03-23
CVE-2021-20270 [HIGH] CWE-835 CVE-2021-20270: An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lead to denial of service when pe
An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lead to denial of service when performing syntax highlighting of a Standard ML (SML) source file, as demonstrated by input that only contains the "exception" keyword.
nvd
CVE-2018-14632P3HIGHCVSS 7.7≤ 3.7v3.9+2 more2018-09-06
CVE-2018-14632 [HIGH] CWE-787 CVE-2018-14632: An out of bound write can occur when patching an Openshift object using the 'oc patch' functionality
An out of bound write can occur when patching an Openshift object using the 'oc patch' functionality in OpenShift Container Platform before 3.7. An attacker can use this flaw to cause a denial of service attack on the Openshift master api service which provides cluster management.
nvd
CVE-2023-6476P3HIGHCVSS 7.5v3.11v4.13+1 more2024-01-09
CVE-2023-6476 [HIGH] CWE-770 CVE-2023-6476: A flaw was found in CRI-O that involves an experimental annotation leading to a container being unco
A flaw was found in CRI-O that involves an experimental annotation leading to a container being unconfined. This may allow a pod to specify and get any amount of memory/cpu, circumventing the kubernetes scheduler and potentially resulting in a denial of service in the node.
nvd