CVE-2024-5042

A flaw was found in the Submariner project. Due to unnecessary role-based access control permissions, a privileged attacker can run a malicious container on a node that may allow them to steal service account tokens and further compromise other nodes and potentially the entire cluster.
Configurations

No configuration.

History

20 May 2024, 06:15

Type Values Removed Values Added
References
  • () https://github.com/advisories/GHSA-2rhx-qhxp-5jpw -

17 May 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-17 14:15

Updated : 2024-05-20 06:15


NVD link : CVE-2024-5042

Mitre link : CVE-2024-5042

CVE.ORG link : CVE-2024-5042


JSON object : View

Products Affected

No product.

CWE
CWE-250

Execution with Unnecessary Privileges