REDHAT-BUG-2450590: High severity Open Cluster Management Open Cluster Management vulnerability
Improper validation of Kubernetes client certificate renewal in Open Cluster Management (OCM), the technology underlying Red Hat Advanced Cluster Management (ACM), allows a managed cluster administrator to forge a client certificate that can be approved by the OCM controller.
Due to predictable cluster name prefix matching, this enables cross-cluster privilege escalation and may allow an attacker to gain control over other managed clusters (including the hub cluster).
Affected Software
Event History
Frequently Asked Questions
Who can exploit this issue?
An attacker needs managed-cluster administrator privileges. The issue can enable that administrator to forge a Kubernetes client certificate that the OCM controller approves.
What is the potential impact beyond the originally compromised cluster?
Predictable cluster name prefix matching can allow cross-cluster privilege escalation. An attacker may gain control of other managed clusters, including the hub cluster.