CVE-2022-2403: High severity red hat openshift vulnerability
A credentials leak was found in the OpenShift Container Platform. The private key for the external cluster certificate was stored incorrectly in the oauth-serving-cert ConfigMaps, and accessible to any authenticated OpenShift user or service-account. A malicious user could exploit this flaw by reading the oauth-serving-cert ConfigMap in the openshift-config-managed namespace, compromising any web traffic secured using that certificate.
Other sources
A credentials leak was found in the OpenShift Container Platform. The private key for the external cluster certificate was stored incorrectly in the oauth-serving-cert ConfigMaps, and accessible to any authenticated OpenShift user or service-account. This flaw allows a malicious user to read the oauth-serving-cert ConfigMap in the openshift-config-managed namespace, compromising any web traffic secured using that certificate.
the oauth-serving-cert configmap in openshift-config-managed and openshift-console projects contains the private key of the cluster external certificate
— Red Hat
Affected Software
Remediation
Patch Available
Information
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2022-2403?
The severity of CVE-2022-2403 is high with a severity value of 7.7.
How can a malicious user exploit CVE-2022-2403?
A malicious user can exploit CVE-2022-2403 by reading the incorrectly stored private key for the external cluster certificate.
What is the affected software for CVE-2022-2403?
The affected software for CVE-2022-2403 is Red Hat OpenShift Container Platform version 4.9 and later.
How can I fix CVE-2022-2403?
To fix CVE-2022-2403, update to the latest version of the OpenShift Container Platform and follow the guidance provided by Red Hat.
Are there any references available for CVE-2022-2403?
Yes, you can find references for CVE-2022-2403 at the following links: [link1](https://github.com/openshift/cluster-authentication-operator/pull/573), [link2](https://access.redhat.com/errata/RHSA-2022:5664), [link3](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=2107027).