PT-2014-5414 · Red Hat · Red Hat Openshift Enterprise

Published

2014-11-13

·

Updated

2023-02-13

·

CVE-2014-3602

CVSS v2.0

2.1

Low

VectorAV:L/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Red Hat OpenShift Enterprise versions prior to 2.2
Description The issue allows local users to obtain IP address and port number information for remote systems by reading /proc/net/tcp.
Recommendations For versions prior to 2.2, restrict access to the /proc/net/tcp file to prevent unauthorized users from reading it.

Fix

Weakness Enumeration

Related Identifiers

CVE-2014-3602
RHSA-2014:1796
RHSA-2014:1906

Affected Products

Red Hat Openshift Enterprise