PT-2018-5046 · Red Hat · Openshift

Kurt Seifried

·

Published

2018-08-01

·

Updated

2023-02-12

·

CVE-2016-8651

CVSS v3.1

3.5

Low

VectorAV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions OpenShift 3 (affected versions not specified)
Description An input validation flaw in OpenShift 3 allows a user to pull an image even without normal access, by using a copy of the manifest associated with the image. This results in the disclosure of any information contained within the image.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

CVE-2016-8651
RHSA-2016:2915

Affected Products

Openshift