First published: Tue Jan 21 2020(Updated: )
An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/apb-base, affecting versions before the following 4.3.5, 4.2.21, 4.1.37, and 3.11.188-4. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/openshift-enterprise-apb-base-container 4.3.5 | <202003020549 | 202003020549 |
redhat/openshift-enterprise-apb-base-container 4.2.21 | <202002240343 | 202002240343 |
redhat/openshift-enterprise-apb-base-container 4.1.37 | <202003021622 | 202003021622 |
redhat/openshift-enterprise-apb-base-container 3.11.188 | <4 | 4 |
Redhat Openshift | <3.11.188-4 | |
Redhat Openshift | >=4.0.0<4.1.37 | |
Redhat Openshift | >=4.2.0<4.2.21 | |
Redhat Openshift | >=4.3.0<4.3.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)