A vulnerability was found in Ignition where ignition configs are accessible from unprivileged containers in VMs running on VMware products. This issue is only relevant in user environments where the Ignition config contains secrets. The highest threat from this vulnerability is to data confidentiality. Possible workaround is to not put secrets in the Ignition config.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2022-05-17T00:00:00

Updated: 2024-08-03T00:10:03.921Z

Reserved: 2022-05-13T00:00:00

Link: CVE-2022-1706

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-05-17T18:15:08.200

Modified: 2023-11-07T03:42:07.933

Link: CVE-2022-1706

cve-icon Redhat

Severity : Moderate

Publid Date: 2022-05-04T00:00:00Z

Links: CVE-2022-1706 - Bugzilla