First published: Tue Jun 14 2022(Updated: )
<p><strong>Executive Summary</strong></p> <p>An Elevation of Privilege (EOP) vulnerability has been identified within Service Fabric clusters that run Docker containers. Exploitation of this EOP vulnerability requires an attacker to gain remote code execution within a container. All Service Fabric and Docker versions are impacted.</p>
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Azure Service Fabric | ||
Microsoft Azure Service Fabric |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-30137 has been classified as a critical vulnerability due to its potential for Elevation of Privilege.
To fix CVE-2022-30137, ensure that you apply the latest patches and updates provided by Microsoft for Service Fabric.
CVE-2022-30137 affects Microsoft Azure Service Fabric clusters that run Docker containers.
Exploitation of CVE-2022-30137 requires remote code execution within a Docker container.
The impact of CVE-2022-30137 allows attackers to elevate their privileges within Service Fabric clusters, potentially compromising the application integrity.