CVE-2013-4281: Medium severity red hat openshift vulnerability
Published Oct 19, 2022
·Updated
In Red Hat Openshift 1, weak default permissions are applied to the /etc/openshift/serverpriv.pem file on the broker server, which could allow users with local access to the broker to read this file.
Affected Software
1 affected component
redhat Openshift=1.0
Remediation
Patch Available
Event History
Oct 19, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2013-4281?
The severity of CVE-2013-4281 is medium with a severity value of 5.5.
2
What is the vulnerability description of CVE-2013-4281?
The vulnerability in Red Hat Openshift 1 allows users with local access to the broker server to read the /etc/openshift/server_priv.pem file due to weak default permissions.
3
How can I fix CVE-2013-4281?
To fix CVE-2013-4281, you should update the permissions of the /etc/openshift/server_priv.pem file on the broker server to restrict access.
4
What software versions are affected by CVE-2013-4281?
CVE-2013-4281 affects Red Hat Openshift 1.0.
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2013-4281?
The Common Weakness Enumeration (CWE) ID for CVE-2013-4281 is 276.