CVE-2013-4253: High severity red hat openshift vulnerability
The deployment script in the unsupported "OpenShift Extras" set of add-on scripts, in Red Hat Openshift 1, installs a default public key in the root user's authorizedkeys file.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2013-4253?
CVE-2013-4253 is a vulnerability found in the deployment script in the unsupported "OpenShift Extras" set of add-on scripts in Red Hat Openshift 1.
What is the severity of CVE-2013-4253?
The severity of CVE-2013-4253 is high, with a severity value of 7.5.
Which software is affected by CVE-2013-4253?
Red Hat Openshift 1.0 is affected by CVE-2013-4253.
How does CVE-2013-4253 impact the system?
CVE-2013-4253 allows an attacker to install a default public key in the root user's authorized_keys file through the deployment script in the unsupported "OpenShift Extras" set of add-on scripts.
How can CVE-2013-4253 be mitigated?
To mitigate CVE-2013-4253, users should avoid using the unsupported "OpenShift Extras" set of add-on scripts and ensure that the root user's authorized_keys file does not contain any unauthorized public keys.