Security Advisory

CVE-2019-19350

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-03-24 15:36:09
Last updated 2024-08-05 02:16:47
Assigner redhat
State PUBLISHED

Description

An insecure modification vulnerability in the /etc/passwd file was found in the openshift/ansible-service-broker as shipped in Red Hat Openshift 4 and 3.11. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.