Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Brian Scott

Researcher fromCisco ASIG
#28913of 53,635
8.8Total CVSS
Vulnerabilities · 1
PT-2022-24179
8.8
2022-12-21
Openstack · Openstack Kolla · CVE-2022-38060
**Name of the Vulnerable Software and Affected Versions** OpenStack Kolla git master 05194e7618 **Description** A privilege escalation issue exists in the sudo functionality. A misconfiguration in `/etc/sudoers` within a container can lead to increased privileges. **Recommendations** For OpenStack Kolla git master 05194e7618, ensure proper configuration of `/etc/sudoers` within containers to prevent privilege escalation. As a temporary workaround, consider restricting access to the sudo functionality until a proper configuration can be implemented.