First published: Wed Oct 19 2022(Updated: )
In Red Hat Openshift 1, weak default permissions are applied to the /etc/openshift/server_priv.pem file on the broker server, which could allow users with local access to the broker to read this file.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Redhat Openshift | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2013-4281 is medium with a severity value of 5.5.
The vulnerability in Red Hat Openshift 1 allows users with local access to the broker server to read the /etc/openshift/server_priv.pem file due to weak default permissions.
To fix CVE-2013-4281, you should update the permissions of the /etc/openshift/server_priv.pem file on the broker server to restrict access.
CVE-2013-4281 affects Red Hat Openshift 1.0.
The Common Weakness Enumeration (CWE) ID for CVE-2013-4281 is 276.