CVE-2019-19350: High severity red hat openshift vulnerability
An insecure modification vulnerability in the /etc/passwd file was found in the openshift/ansible-service-broker as shipped in Red Hat Openshift 4 and 3.11. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.
Other sources
It has been found that multiple containers modify the permissions of /etc/passwd to make them modifiable by users other than root. An attacker with access to the running container can exploit this to modify /etc/passwd to add a user and escalate their privileges. This CVE is specific to the openshift/ansible-service-broker-operator-container.
Original bug: https://bugzilla.redhat.com/showbug.cgi?id=1791534
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this insecure modification vulnerability in /etc/passwd file?
The vulnerability ID for this insecure modification vulnerability in /etc/passwd file is CVE-2019-19350.
What is the severity level of CVE-2019-19350?
The severity level of CVE-2019-19350 is high with a CVSS score of 7.8.
Which software versions are affected by CVE-2019-19350?
CVE-2019-19350 affects Red Hat Openshift 4 and 3.11.
How can an attacker exploit CVE-2019-19350?
An attacker with access to the container could exploit CVE-2019-19350 to modify the /etc/passwd file and escalate their privileges.
Are there any references available for CVE-2019-19350?
Yes, you can find references for CVE-2019-19350 at the following links: [Bugzilla Red Hat - CVE-2019-19350](https://bugzilla.redhat.com/show_bug.cgi?id=1791534), [Bugzilla Red Hat - CVE-2019-19350](https://bugzilla.redhat.com/show_bug.cgi?id=1793283), [Bugzilla Red Hat - CVE-2019-19350](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=1791534)