PT-2020-7493 · Red Hat · Red Hat Openshift
Published
2020-02-12
·
Updated
2025-05-09
·
CVE-2013-4281
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
Red Hat Openshift version 1
Description:
The issue is related to weak default permissions applied to the /etc/openshift/server priv.pem file on the broker server. This could allow users with local access to the broker to read this file.
Recommendations:
For Red Hat Openshift version 1, update the permissions of the /etc/openshift/server priv.pem file to restrict access and prevent unauthorized reading.
Fix
Incorrect Default Permissions
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Red Hat Openshift