A flaw was found in the OpenShift build process, where the docker-build container is configured with a hostPath volume mount that maps the node's /var/lib/kubelet/config.json file into the build pod. This file contains sensitive credentials necessary for pulling images from private repositories. The mount is not read-only, which allows the attacker to overwrite it. By modifying the config.json file, the attacker can cause a denial of service by preventing the node from pulling new images and potentially exfiltrating sensitive secrets. This flaw impacts the availability of services dependent on image pulls and exposes sensitive information to unauthorized parties.
History

Tue, 31 Dec 2024 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 31 Dec 2024 02:45:00 +0000

Type Values Removed Values Added
Title openshift-api: Build Process in OpenShift Allows Overwriting of Node Pull Credentials Openshift-api: build process in openshift allows overwriting of node pull credentials
First Time appeared Redhat
Redhat jboss Fuse
Redhat openshift
CPEs cpe:/a:redhat:jboss_fuse:7
cpe:/a:redhat:openshift:4
Vendors & Products Redhat
Redhat jboss Fuse
Redhat openshift
References

Tue, 31 Dec 2024 02:30:00 +0000

Type Values Removed Values Added
Description A flaw was found in the OpenShift build process, where the docker-build container is configured with a hostPath volume mount that maps the node's /var/lib/kubelet/config.json file into the build pod. This file contains sensitive credentials necessary for pulling images from private repositories. The mount is not read-only, which allows the attacker to overwrite it. By modifying the config.json file, the attacker can cause a denial of service by preventing the node from pulling new images and potentially exfiltrating sensitive secrets. This flaw impacts the availability of services dependent on image pulls and exposes sensitive information to unauthorized parties.
Title openshift-api: Build Process in OpenShift Allows Overwriting of Node Pull Credentials
Weaknesses CWE-732
References
Metrics threat_severity

None

cvssV3_1

{'score': 7.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H'}

threat_severity

Moderate


cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2024-12-31T02:19:22.553Z

Updated: 2024-12-31T15:54:01.852Z

Reserved: 2024-08-30T10:12:13.684Z

Link: CVE-2024-45497

cve-icon Vulnrichment

Updated: 2024-12-31T15:53:58.278Z

cve-icon NVD

Status : Received

Published: 2024-12-31T03:15:05.543

Modified: 2024-12-31T03:15:05.543

Link: CVE-2024-45497

cve-icon Redhat

Severity : Moderate

Publid Date: 2024-12-15T00:00:00Z

Links: CVE-2024-45497 - Bugzilla