2024-09-19 22:03:17 +00:00

84 lines
3.3 KiB
JSON

{
"id": "CVE-2024-45496",
"sourceIdentifier": "secalert@redhat.com",
"published": "2024-09-17T00:15:52.433",
"lastModified": "2024-09-19T20:15:06.813",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "A flaw was found in OpenShift. This issue occurs due to the misuse of elevated privileges in the OpenShift Container Platform's build process. During the build initialization step, the git-clone container is run with a privileged security context, allowing unrestricted access to the node. An attacker with developer-level access can provide a crafted .gitconfig file containing commands executed during the cloning process, leading to arbitrary command execution on the worker node. An attacker running code in a privileged container could escalate their permissions on the node running the container."
},
{
"lang": "es",
"value": "Se encontr\u00f3 una falla en OpenShift. Este problema ocurre debido al uso indebido de privilegios elevados en el proceso de compilaci\u00f3n de OpenShift Container Platform. Durante el paso de inicializaci\u00f3n de la compilaci\u00f3n, el contenedor git-clone se ejecuta con un contexto de seguridad privilegiado, lo que permite un acceso sin restricciones al nodo. Un atacante con acceso de nivel de desarrollador puede proporcionar un archivo .gitconfig dise\u00f1ado que contenga comandos ejecutados durante el proceso de clonaci\u00f3n, lo que lleva a la ejecuci\u00f3n arbitraria de comandos en el nodo de trabajo. Un atacante que ejecute c\u00f3digo en un contenedor privilegiado podr\u00eda aumentar sus permisos en el nodo que ejecuta el contenedor."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "secalert@redhat.com",
"type": "Secondary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:L",
"attackVector": "NETWORK",
"attackComplexity": "LOW",
"privilegesRequired": "LOW",
"userInteraction": "NONE",
"scope": "CHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"availabilityImpact": "LOW",
"baseScore": 9.9,
"baseSeverity": "CRITICAL"
},
"exploitabilityScore": 3.1,
"impactScore": 6.0
}
]
},
"weaknesses": [
{
"source": "secalert@redhat.com",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-269"
}
]
}
],
"references": [
{
"url": "https://access.redhat.com/errata/RHSA-2024:6685",
"source": "secalert@redhat.com"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:6687",
"source": "secalert@redhat.com"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:6689",
"source": "secalert@redhat.com"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:6691",
"source": "secalert@redhat.com"
},
{
"url": "https://access.redhat.com/errata/RHSA-2024:6705",
"source": "secalert@redhat.com"
},
{
"url": "https://access.redhat.com/security/cve/CVE-2024-45496",
"source": "secalert@redhat.com"
},
{
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=2308661",
"source": "secalert@redhat.com"
}
]
}