Description
A privilege escalation flaw was found in the node restriction admission plugin of the kubernetes api server of OpenShift. A remote attacker who modifies the node role label could steer workloads from the control plane and etcd nodes onto different worker nodes and gain broader access to the cluster.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-57723 | A privilege escalation flaw was found in the node restriction admission plugin of the kubernetes api server of OpenShift. A remote attacker who modifies the node role label could steer workloads from the control plane and etcd nodes onto different worker nodes and gain broader access to the cluster. |
References
History
Fri, 17 Oct 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2025-11-07T09:40:46.275Z
Reserved: 2023-10-04T17:58:23.775Z
Link: CVE-2023-5408
Updated: 2024-08-02T07:59:44.895Z
Status : Modified
Published: 2023-11-02T03:15:10.230
Modified: 2024-11-21T08:41:42.800
Link: CVE-2023-5408
OpenCVE Enrichment
No data.
Weaknesses
EUVD