Security Advisory

CVE-2024-5042

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-05-17 13:12:00
Last updated 2026-04-24 14:17:18
Assigner redhat
State PUBLISHED

Description

A flaw was found in the Submariner project. Due to unnecessary role-based access control permissions, a privileged attacker can run a malicious container on a node that may allow them to steal service account tokens and further compromise other nodes and potentially the entire cluster.