Security Advisory

CVE-2019-19349

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-03-24 15:32:35
Last updated 2024-08-05 02:16:47
Assigner redhat
State PUBLISHED

Description

An insecure modification vulnerability in the /etc/passwd file was found in the container operator-framework/operator-metering as shipped in Red Hat Openshift 4. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.