An insecure modification flaw in the /etc/passwd file was found in the openjdk-1.8 and openjdk-11 containers. This flaw allows an attacker with access to the container to modify the /etc/passwd and escalate their privileges. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-7700 An insecure modification flaw in the /etc/passwd file was found in the openjdk-1.8 and openjdk-11 containers. This flaw allows an attacker with access to the container to modify the /etc/passwd and escalate their privileges. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-03T17:37:23.455Z

Reserved: 2020-12-17T00:00:00

Link: CVE-2021-20264

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-10-06T16:15:07.297

Modified: 2024-11-21T05:46:14.340

Link: CVE-2021-20264

cve-icon Redhat

Severity : Moderate

Publid Date: 2020-01-21T06:40:00Z

Links: CVE-2021-20264 - Bugzilla

cve-icon OpenCVE Enrichment

No data.