Description
A security issue was discovered in Kubernetes clusters with Windows nodes where BUILTIN\Users may be able to read container logs and NT AUTHORITY\Authenticated Users may be able to modify container logs.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-2290 | A security issue was discovered in Kubernetes clusters with Windows nodes where BUILTIN\Users may be able to read container logs and NT AUTHORITY\Authenticated Users may be able to modify container logs. |
Github GHSA |
GHSA-82m2-cv7p-4m75 | Kubernetes sets incorrect permissions on Windows containers logs |
References
History
Tue, 17 Sep 2024 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:openshift:4.12::el8 |
Fri, 13 Sep 2024 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 09 Sep 2024 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat
Redhat openshift |
|
| CPEs | cpe:/a:redhat:openshift:4.13::el9 cpe:/a:redhat:openshift:4.14::el9 |
|
| Vendors & Products |
Redhat
Redhat openshift |
Status: PUBLISHED
Assigner: kubernetes
Published:
Updated: 2024-09-13T17:05:30.545Z
Reserved: 2024-05-24T15:17:53.856Z
Link: CVE-2024-5321
Updated: 2024-09-13T17:05:30.545Z
Status : Deferred
Published: 2024-07-18T19:15:12.607
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-5321
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA