First published: Tue Jul 21 2020(Updated: )
The Restricted Security Context Constraints (SCC) allows pods to craft custom network packets. An attacker can use this flaw to cause a denial of service attack on an OpenShift Container Platform cluster if they have the ability to deploy pods.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat OpenShift Container Platform for IBM LinuxONE |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1858981 is considered high due to the potential for denial of service attacks on OpenShift Container Platform clusters.
To fix REDHAT-BUG-1858981, ensure that restricted security context constraints are properly configured to prevent unauthorized pod deployment.
Users of Red Hat OpenShift Container Platform who can deploy pods are affected by REDHAT-BUG-1858981.
REDHAT-BUG-1858981 can facilitate denial of service attacks against OpenShift Container Platform clusters.
The components involved in REDHAT-BUG-1858981 are the Restricted Security Context Constraints and pod deployment functionality within OpenShift.